CVE-2017-17677: High severity BMC Remedy Mid-Tier vulnerability
Published May 19, 2021
·Updated
BMC Remedy 9.1SP3 is affected by authenticated code execution. Authenticated users that have the right to create reports can use BIRT templates to run code.
Affected Software
1 affected component
BMC Remedy Mid-Tier=9.1-sp3
Event History
May 19, 2021
CVE Published
via MITRE·01:11 PM
Data Sourced
via MITRE·01:11 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2017-17677?
CVE-2017-17677 is a vulnerability affecting BMC Remedy 9.1SP3 that allows authenticated users with report creation rights to execute arbitrary code using BIRT templates.
2
How severe is CVE-2017-17677?
CVE-2017-17677 has a severity rating of 8.8 (high).
3
How can I fix CVE-2017-17677?
To fix CVE-2017-17677, it is recommended to apply the available fixes provided by BMC and update to the latest version of BMC Remedy.
4
Where can I find more information about CVE-2017-17677?
More information about CVE-2017-17677 can be found in the references provided: http://bmc.com, http://remedy.com, and the official documentation from BMC.
5
What is the CWE-ID of CVE-2017-17677?
The CWE-ID of CVE-2017-17677 is 732.