CVE-2018-19505
Remedy AR System Server in BMC Remedy 7.1 may fail to set the correct user context in certain impersonation scenarios, which can allow a user to act with the identity of a different user, because userdata.js in the WOI:WorkOrderConsole component allows…
Does this matter?
Lower severity and a low EPSS score (1.58%). Track it; it rarely justifies an emergency change on its own.
Description
Remedy AR System Server in BMC Remedy 7.1 may fail to set the correct user context in certain impersonation scenarios, which can allow a user to act with the identity of a different user, because userdata.js in the WOI:WorkOrderConsole component allows a username substitution involving a UserData_Init call.
- CVSS 3.0
- 6.5 MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
- EPSS
- 1.58% probability · 74th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- bmc/remedy action request system server
- Source
- cve@mitre.org
References
- http://packetstormsecurity.com/files/150492/BMC-Remedy-7.1-User-Impersonation.htmlThird Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2018/Nov/62Mailing List, Third Party Advisory
- http://www.securitytracker.com/id/1042177Third Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/150492/BMC-Remedy-7.1-User-Impersonation.htmlThird Party Advisory, VDB Entry
- http://seclists.org/fulldisclosure/2018/Nov/62Mailing List, Third Party Advisory
- http://www.securitytracker.com/id/1042177Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.