Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2726▼ 82 respecto a la semana anterior
Críticas / altas1416▲ 189 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)100▼ 400 respecto a la semana anterior
30 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Media (5.6) | 0.11% | — | BMC Control-m Enterprise ManagerAI | 1/7/2026 | 1/7/2026 | The Control-M/Enterprise Manager uses weak protections for stored hashes of account passwords, potentially allowing offline password recovery attacks if credential data is obtained by an attacker. This vulnerability affects Control-M/Enterprise Manager unsupported versions 9.0.20.x and potentially earlier unsupported… | |
| Pendiente de análisis | Crítica (9.5) | 0.42% | — | BMC Control-m ServerAI | 1/7/2026 | 1/7/2026 | A Control-M/Server communication command does not sufficiently filter or sanitize user-supplied input. Under certain conditions, this issue may allow an unauthenticated attacker to execute unauthorized commands on the affected server, potentially leading to compromise of the server. This vulnerability affects… | |
| Pendiente de análisis | Alta (8.9) | 0.42% | — | BMC Control-m ServerAIBMC Control-m Enterprise ManagerAI | 1/7/2026 | 1/7/2026 | Messaging consumer functionality allows deserialization of user-controlled data without sufficient restriction of allowed object types in the out of support Control-M/Server and Control-M/Enterprise Manager versions 9.0.20.x and potentially earlier. This issue may allow an authenticated attacker to trigger unintended… | |
| Analizada | Crítica (9.8) | 0.28% | — | BMC Control-m/managed File Transfer | 10/4/2026 | 17/6/2026 | An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A set of default debug user credentials is hardcoded in cleartext within the application package. If left unchanged, these credentials can be easily obtained and may allow unauthorized access to the MFT API debug interface. | |
| Analizada | Alta (7.5) | 0.27% | — | BMC Control-m/managed File Transfer | 10/4/2026 | 17/6/2026 | An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. An API management endpoint allows unauthenticated users to obtain both an API identifier and its corresponding secret value. With these exposed secrets, an attacker could invoke privileged API operations, potentially leading to unauthorized access. | |
| Analizada | Alta (8.8) | 0.40% | — | BMC Control-m/managed File Transfer | 10/4/2026 | 17/6/2026 | An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A SQL injection vulnerability in the MFT API's debug interface allows an authenticated attacker to inject malicious queries due to improper input validation and unsafe dynamic SQL handling. Successful exploitation can enable arbitrary file read/write… | |
| Aplazada | Crítica (9.5) | 0.78% | — | BMC Control-m AgentAI | 5/11/2025 | 17/6/2026 | The Control-M/Agent is vulnerable to unauthenticated remote code execution, arbitrary file read and write and similar unauthorized actions when mutual SSL/TLS authentication is not enabled (i.e. in the default configuration). NOTE: | |
| Aplazada | Alta (8.4) | 0.37% | — | BMC Control-m AgentAI | 16/9/2025 | 17/6/2026 | Memory corruptions can be remotely triggered in the Control-M/Agent when SSL/TLS communication is configured. The issue occurs in the following cases: | |
| Analizada | Media (6.3) | 0.33% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | A stack-based buffer overflow can be remotely triggered when formatting an error message in the Control-M/Agent when SSL/TLS communication is configured. The issue occurs in the following cases: | |
| Analizada | Crítica (9.3) | 0.16% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | A buffer overflow in the Control-M/Agent can lead to a local privilege escalation when an attacker has access to the system running the Agent. This vulnerability impacts the out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlier unsupported versions. | |
| Analizada | Crítica (9.3) | 0.17% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | A path traversal in the Control-M/Agent can lead to a local privilege escalation when an attacker has access to the system running the Agent. This vulnerability impacts the out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlier unsupported versions. This vulnerability was fixed in 9.0.20.100… | |
| Aplazada | Media (6.9) | 0.39% | — | BMC Control-m AgentAIBMC Control-m ServerAI | 16/9/2025 | 17/6/2026 | The improper order of AUTHORIZED_CTM_IP validation in the Control-M/Agent, where the Control-M/Server IP address is validated only after the SSL/TLS handshake is completed, exposes the Control-M/Agent to vulnerabilities in the SSL/TLS implementation under certain non-default conditions (e.g. CVE-2025-55117 or… | |
| Analizada | Crítica (9.5) | 0.29% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | If the Access Control List is enforced by the Control-M/Agent and the C router is in use (default in Out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlier unsupported versions; non-default but configurable using the JAVA_AR setting in newer versions), the verification stops at the first NULL… | |
| Analizada | Alta (7.6) | 0.22% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | Out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 (and potentially earlier unsupported versions) that are configured to use the non-default Blowfish cryptography algorithm use a hardcoded key. An attacker with access to network traffic and to this key could decrypt network traffic between the Control-M/Agent… | |
| Analizada | Media (5.7) | 0.13% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | Certain files with overly permissive permissions were identified in the out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlier unsupported versions as well as in newer versions which were upgraded from an affected version. These files contain keys and passwords relating to SSL files, keystore… | |
| Aplazada | Media (5.7) | 0.14% | — | BMC Control-m/agentsAI | 16/9/2025 | 17/6/2026 | Control-M/Agents use a kdb or PKCS#12 keystore by default, and the default keystore password is well known and documented. An attacker with read access to the keystore could access sensitive data using this password. | |
| Analizada | Crítica (9.5) | 0.35% | — | BMC Control-m/agent | 16/9/2025 | 17/6/2026 | An authentication bypass vulnerability exists in the out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlier unsupported versions when using an empty or default kdb keystore or a default PKCS#12 keystore. A remote attacker with access to a signed third-party or demo certificate for client… | |
| Analizada | Media (4.8) | 0.13% | — | BMC Control-m/server | 7/8/2025 | 17/6/2026 | BMC Control-M/Server 9.0.21.300 displays cleartext database credentials in process lists and logs. An authenticated attacker with shell access could observe these credentials and use them to log in to the database server. For example, when Control-M/Server on Windows has a database connection on, it runs… | |
| Analizada | Media (5.4) | 0.43% | — | BMC Control-m | 18/3/2024 | 17/6/2026 | Lack of input sanitization in BMC Control-M branches 9.0.20 and 9.0.21 allows logged-in users for manipulation of generated web pages via injection of HTML code. This might lead to a successful phishing attack for example by tricking users into using a hyperlink pointing to a website controlled by an attacker. Fix for… | |
| Analizada | Alta (7.8) | 0.20% | — | BMC Control-m | 18/3/2024 | 17/6/2026 | BMC Control-M branches 9.0.20 and 9.0.21 upon user login load all Dynamic Link Libraries (DLL) from a directory that grants Write and Read permissions to all users. Leveraging it leads to loading of a potentially malicious libraries, which will execute with the application's privileges. Fix for 9.0.20 branch was… | |
| Analizada | Media (6.8) | 0.49% | — | BMC Control-m | 18/3/2024 | 17/6/2026 | Improper authorization in the report management and creation module of BMC Control-M branches 9.0.20 and 9.0.21 allows logged-in users to read and make unauthorized changes to any reports available within the application, even without proper permissions. The attacker must know the unique identifier of the report they… | |
| Modificada | Crítica (9.8) | 0.67% | — | BMC Control-m | 31/7/2023 | 17/6/2026 | BMC Control-M through 9.0.20.200 allows SQL injection via the /RF-Server/report/deleteReport report-id parameter. This is fixed in 9.0.21 (and is also fixed by a patch for 9.0.20.200). | |
| Modificada | Crítica (9.8) | 0.75% | — | BMC Control-m | 25/2/2023 | 17/6/2026 | A SQL injection vulnerability in BMC Control-M before 9.0.20.214 allows attackers to execute arbitrary SQL commands via the memname JSON field. | |
| Modificada | Alta (8.8) | 1.8% | — | Bmcsoftware Control-m/agent | 30/4/2020 | 17/6/2026 | BMC Control-M/Agent 7.0.00.000 allows OS Command Injection (issue 2 of 2). | |
| Modificada | Alta (7.5) | 1.1% | — | Bmcsoftware Control-m/agent | 30/4/2020 | 17/6/2026 | BMC Control-M/Agent 7.0.00.000 allows Arbitrary File Download. |