CVE-2016-4322: Critical severity bmc bladelogic server automation console vulnerability
BMC BladeLogic Server Automation (BSA) before 8.7 Patch 3 allows remote attackers to bypass authentication and consequently read arbitrary files or possibly have unspecified other impact by leveraging a "logic flaw" in the authentication process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4322?
CVE-2016-4322 is classified as a high severity vulnerability due to its ability to allow remote attackers to bypass authentication.
How do I fix CVE-2016-4322?
To mitigate CVE-2016-4322, upgrade BMC BladeLogic Server Automation to version 8.7 Patch 3 or later.
What types of attacks can exploit CVE-2016-4322?
CVE-2016-4322 can be exploited to bypass authentication, leading to unauthorized file access and other unspecified impacts.
What versions of BMC BladeLogic are affected by CVE-2016-4322?
CVE-2016-4322 affects BMC BladeLogic Server Automation versions prior to 8.7 Patch 3.
Is authentication compromised in CVE-2016-4322?
Yes, CVE-2016-4322 involves a logic flaw in the authentication process that can be exploited by attackers.