Zero Day Initiative Advisory 08-082...

- AV AC AU C I A
发布: 2008-12-09
修订: 2025-04-13

A vulnerability allows attackers to execute arbitrary code on vulnerable installations of BMC PatrolAgent. Authentication is not required to exploit this vulnerability. The specific flaw exists due to a format string handling error during log message writing. Supplying an invalid version number containing format string tokens to a vulnerable target on TCP port 3181 triggers an exploitable format string vulnerability which can result in arbitrary code execution.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息