CVE-2016-5063: Medium severity bmc bladelogic server automation console vulnerability
Published May 2, 2017
·Updated
The RSCD agent in BMC Server Automation before 8.6 SP1 Patch 2 and 8.7 before Patch 3 on Windows might allow remote attackers to bypass authorization checks and make an RPC call via unspecified vectors.
Affected Software
2 affected components
BMC Server Automation<=8.6
BMC Server Automation<=8.7
Event History
May 2, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5063?
The severity of CVE-2016-5063 is classified as high due to the potential for remote exploitation.
2
How do I fix CVE-2016-5063?
To fix CVE-2016-5063, upgrade to BMC Server Automation version 8.6 SP1 Patch 2 or 8.7 Patch 3 or later.
3
What software is affected by CVE-2016-5063?
CVE-2016-5063 affects BMC Server Automation versions prior to 8.6 SP1 Patch 2 and 8.7 before Patch 3.
4
Can CVE-2016-5063 lead to unauthorized access?
Yes, CVE-2016-5063 may allow remote attackers to bypass authorization checks, leading to unauthorized access.
5
What type of attack can exploit CVE-2016-5063?
CVE-2016-5063 can be exploited through remote procedure calls (RPC) by authenticated attackers.