BMC FootPrints是美国BMC公司的一个IT服务管理与工单跟踪系统。 BMC FootPrints 20.24.01.001及之前版本存在代码问题漏洞,该漏洞源于searchWeb API组件存在盲服务端请求伪造,且URL验证不当,可能导致经过身份验证的攻击者执行内部网络扫描或与内部服务交互,影响系统可用性。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| BMC Software, Inc. | FootPrints | 20.20.02≤ 20.24.01.001 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| BMC Software, Inc. | FootPrints | 20.20.02 ~ 20.24.01.001 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | BMC FootPrints versions 20.20.02 through 20.24.01.001 contain a Server-Side Request Forgery (SSRF) vulnerability in the /footprints/servicedesk/import/searchWeb endpoint. The 'url' parameter allows unauthenticated attackers to force the server to make HTTP requests to arbitrary URLs, enabling access to internal services and bypassing firewall restrictions. This vulnerability is part of a pre-authenticated RCE chain when combined with CVE-2025-71257 (auth bypass) and CVE-2025-71260 (deserialization). | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2025/CVE-2025-71258.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2025-71260 | 8.8 HIGH | BMC FootPrints ITSM 20.20.02 <= 20.24.01.001 VIEWSTATE Deserialization RCE |
| CVE-2025-71257 | 7.3 HIGH | BMC FootPrints ITSM 20.20.02 <= 20.24.01.001 Authentication Bypass |
| CVE-2025-71259 | 4.3 MEDIUM | BMC FootPrints ITSM 20.20.02 <= 20.24.01.001 Blind SSRF in externalfeed/RSS |
No comments yet