CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
AI Score
Confidence
Low
EPSS
Percentile
96.9%
Stack-based buffer overflow in bgs_sdservice.exe in BMC Patrol PerformAgent allows remote attackers to execute arbitrary code by connecting to TCP port 10128 and sending certain XDR data, which is not properly parsed.
Vendor | Product | Version | CPE |
---|---|---|---|
bmc | patrol_perform_agent | * | cpe:2.3:a:bmc:patrol_perform_agent:*:*:*:*:*:*:*:* |
secunia.com/advisories/24937
securityreason.com/securityalert/2598
www.securityfocus.com/archive/1/466222/100/0/threaded
www.securityfocus.com/bid/23557
www.securitytracker.com/id?1017934
www.vupen.com/english/advisories/2007/1457
www.zerodayinitiative.com/advisories/ZDI-07-019.html
exchange.xforce.ibmcloud.com/vulnerabilities/33745