Description
A buffer overflow vulnerability in BMC Control-M/Agent 7.0.00.000 when the On-Do action destination is Mail and the Control-M/Agent is configured to send the email, allows remote attackers to have unspecified impact via vectors related to the configured IP address or SMTP server.
References (2)
Core 2
Core References
Third Party Advisory x_refsource_misc
https://herolab.usd.de/en/security-advisories/
Product x_refsource_misc
https://www.bmc.com/it-solutions/control-m.html
Scores
CVSS v3
8.8
EPSS
0.0067
EPSS Percentile
71.6%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-120
Status
published
Products (1)
bmcsoftware/control-m\/agent
7.0.00.000
Published
Apr 30, 2020
Tracked Since
Feb 18, 2026