Log Hijacking Vulnerability in BMC Remedy Mid Tier Software
CVE-2017-17675

5.3MEDIUM

Key Information:

Vendor

Bmc

Vendor
CVE Published:
19 May 2021

What is CVE-2017-17675?

BMC Remedy Mid Tier 9.1SP3 is vulnerable to log hijacking, which permits unauthorized users to access remote logging functionalities. By exploiting this vulnerability, an attacker can hijack system logs, potentially exposing sensitive data such as user names and HTTP request information. This unauthorized access could lead to further exploitation and must be addressed to ensure the security of the system.

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.