Security Advisory

CVE-2023-26550

9.8
CRITICAL

Vulnerability Description

A SQL injection vulnerability in BMC Control-M before 9.0.20.214 allows attackers to execute arbitrary SQL commands via the memname JSON field.
Published Date February 25, 2023
Official Source NIST NVD Advisory