CVE-2025-55110
EUVD-2025-2957316.09.2025, 13:16
Control-M/Agents use a kdb or PKCS#12 keystore by default, and the default keystore password is well known and documented. An attacker with read access to the keystore could access sensitive data using this password.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| bmc | control-m\/agent | 9.0.22 | CNA |
| bmc | control-m\/agent | 9.0.21 | CNA |
| bmc | control-m\/agent | 9.0.20 | CNA |
| bmc | control-m\/agent | 9.0.19 | CNA |
| bmc | control-m\/agent | 9.0.18 | CNA |
Common Weakness Enumeration