Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Bmc

First CVE: Nov 2, 1998Active for: 28 yearsTotal CVEs: 81
59.7
VTI Score
TOP TARGET

BMC Software's vulnerability footprint spans enterprise systems management and IT service automation products widely deployed across large organizations, presenting a significant attack surface in critical infrastructure layers. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity and a corresponding tendency toward public exploit availability, reflecting the high-value target profile of IT operations software. The exposure concentrates in flagship products such as Patrol Agent and Control-M Agent, alongside the Track-It ticketing platform, and recurs through weakness classes including improper authentication, cross-site scripting, SQL injection, and insecure default permissions—vulnerabilities characteristic of web-facing and authentication-dependent enterprise tools. Defenders should prioritize patching and inventory of BMC products in networked environments, particularly those accessible from less-trusted network segments; live exploitation activity, severity distribution, and exposure counts are shown alongside this summary.

FAUCET AI Generated
81
Total CVEs
More Total CVEs than 99% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 72% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Bmc over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 2, 1998
27 years ago
Most Recent CVE
Jul 1, 2026
23 days ago

Products(30 total)

Top CVEs

Signals from CVEs in this vendor scope (81 CVEs).

81 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2014-4872HIGH
BMC Track-It! 11.3.0.355 does not require authentication on TCP port 9010, which allows remote attackers to upload arbitrary files, execute arbitrary code, or obtain sensitive cred
Oct 10, 20147.583NOYES
CVE-2016-1542HIGH
The RPC API in RSCD agent in BMC BladeLogic Server Automation (BSA) 8.2.x, 8.3.x, 8.5.x, 8.6.x, and 8.7.x on Linux and UNIX allows remote attackers to bypass authorization and enum
Jun 13, 20167.582NOYES
CVE-2016-1543HIGH
The RPC API in the RSCD agent in BMC BladeLogic Server Automation (BSA) 8.2.x, 8.3.x, 8.5.x, 8.6.x, and 8.7.x on Linux and UNIX allows remote attackers to bypass authorization and
Jun 13, 20167.581NOYES
CVE-2025-71260HIGH
BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain a deserialization of untrusted data vulnerability in the ASP.NET servlet's VIEWSTATE handling that allows authent
Mar 19, 20268.862NOYES
CVE-2016-6598CRITICAL
BMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting file storage service (FileStorageService) on port 9010. This service contains a method that allows uploa
Jan 30, 20189.851NOYES
CVE-2025-71258HIGH
BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain a blind server-side request forgery vulnerability in the searchWeb API component that allows authenticated attack
Mar 19, 20267.149NOYES
CVE-2016-6599CRITICAL
BMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting configuration service (ConfigurationService) on port 9010. This service contains a method that can be us
Jan 30, 20189.849NOYES
CVE-2018-20735HIGH
An issue was discovered in BMC PATROL Agent through 11.3.01. It was found that the PatrolCli application can allow for lateral movement and escalation of privilege inside a Windows
Jan 17, 20197.847NOYES
CVE-2025-71259HIGH
BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain a blind server-side request forgery vulnerability in the externalfeed/RSS API component that allows authenticated
Mar 19, 20267.146NOYES
CVE-2025-71257CRITICAL
BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 contain an authentication bypass vulnerability due to improper enforcement of security filters on restricted REST API end
Mar 19, 20269.145NOYES
View all 81 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products81 CVEs
35%
42%
22%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local12 (14.8%)
Network50 (61.7%)
Unknown19 (23.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low56 (69.1%)
High6 (7.4%)
Unknown19 (23.5%)
User Interaction
None54 (66.7%)
Unknown19 (23.5%)
Required8 (9.9%)
Privileges Required
Low28 (34.6%)
High2 (2.5%)
None32 (39.5%)
Unknown19 (23.5%)

Exploit Exposure

Signals from CVEs in this vendor scope (81 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
5 CVEs
6.2% of CVEs· 98th percentile
Nuclei
4 CVEs
4.9% of CVEs· 96th percentile
ExploitDB
14 CVEs
17.3% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Bmc.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Bmc — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Bmc's Products

View all 8 CNAs →

Top CWEs