CVE-2023-34258
31.05.2023, 20:15
An issue was discovered in BMC Patrol before 22.1.00. The agent's configuration can be remotely queried. This configuration contains the Patrol account password, encrypted with a default AES key. This account can then be used to achieve remote code execution.Enginsight
Vendor | Product | Version |
---|---|---|
bmc | patrol | 𝑥 < 22.1.00 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References