BMC Control-M/MFT是美国BMC公司的一款企业级文件传输与作业调度集成管理的自动化软件。 BMC Control-M/MFT 9.0.22及之前版本存在安全漏洞,该漏洞源于MFT API调试接口存在输入验证不当和动态SQL处理不安全,可能导致SQL注入、任意文件读写和远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-5999 | 6.3 MEDIUM | JeecgBoot SysAnnouncementController improper authorization |
| CVE-2026-6011 | 5.6 MEDIUM | OpenClaw assertPublicHostname web-fetch.ts server-side request forgery |
| CVE-2026-36232 | itsourcecode Online Student Enrollment System 安全漏洞 | |
| CVE-2026-36234 | itsourcecode Online Student Enrollment System 安全漏洞 | |
| CVE-2026-36235 | itsourcecode Online Student Enrollment System 安全漏洞 | |
| CVE-2026-36233 | itsourcecode Online Student Enrollment System 安全漏洞 | |
| CVE-2026-36236 | SourceCodester Engineers Online Portal 安全漏洞 | |
| CVE-2026-29861 | PHP MySQL User Signup Login System 安全漏洞 | |
| CVE-2026-31262 | Altenar Sportsbook Software Platform SB2 安全漏洞 | |
| CVE-2026-23781 | BMC Control-M/MFT 安全漏洞 | |
| CVE-2026-23782 | BMC Control-M/MFT 安全漏洞 | |
| CVE-2025-44560 | OwnTone 安全漏洞 |
No comments yet