Description
Remedy AR System Server in BMC Remedy 7.1 may fail to set the correct user context in certain impersonation scenarios, which can allow a user to act with the identity of a different user, because userdata.js in the WOI:WorkOrderConsole component allows a username substitution involving a UserData_Init call.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1042177
Third Party Advisory, VDB Entry x_refsource_misc
http://packetstormsecurity.com/files/150492/BMC-Remedy-7.1-User-Impersonation.html
Mailing List, Third Party Advisory mailing-list
x_refsource_fulldisc
http://seclists.org/fulldisclosure/2018/Nov/62
Scores
CVSS v3
6.5
EPSS
0.0158
EPSS Percentile
72.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Details
CWE
CWE-287
Status
published
Products (1)
bmc/remedy_action_request_system_server
7.1
Published
Jan 03, 2019
Tracked Since
Feb 18, 2026