CVE-2024-1605

MEDIUM

BMC Control-M 9.0.20-9.0.20.237 and 9.0.21-9.0.21.200 - Unauthenticated DLL Hijacking via Insecure Directory Permissions

Title source: llm
STIX 2.1

Description

BMC Control-M branches 9.0.20 and 9.0.21 upon user login load all Dynamic Link Libraries (DLL) from a directory that grants Write and Read permissions to all users. Leveraging it leads to loading of a potentially malicious libraries, which will execute with the application's privileges. Fix for 9.0.20 branch was released in version 9.0.20.238. Fix for 9.0.21 branch was released in version 9.0.21.201.

References (3)

Core 3
Core References
Third Party Advisory third-party-advisory
https://cert.pl/posts/2024/03/CVE-2024-1604
Third Party Advisory third-party-advisory
https://cert.pl/en/posts/2024/03/CVE-2024-1604

Scores

CVSS v3 6.6
EPSS 0.0020
EPSS Percentile 10.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-276
Status published
Products (1)
bmc/control-m 9.0.20 - 9.0.20.238
Published Mar 18, 2024
Tracked Since Feb 18, 2026