PT-2019-12192 · Bmc · Bmc Smart Reporting

David Herrero

·

Published

2019-12-04

·

Updated

2019-12-13

·

CVE-2019-11216

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions BMC Smart Reporting version 7.3 20180418
Description The issue allows authenticated XXE (XML External Entity) attacks within the import functionality. This can be exploited by importing a malicious XML file, enabling the attacker to download local files from the server or perform Denial of Service (DoS) attacks using XML expansion attacks. Both XXE with direct response and Out-of-Band (OOB) XXE attacks are possible.
Recommendations For BMC Smart Reporting version 7.3 20180418, consider disabling the import functionality temporarily to prevent XXE attacks until a patch is available. Restrict access to the import feature to minimize the risk of exploitation. Avoid using the import functionality with untrusted XML files until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XXE

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-11216

Affected Products

Bmc Smart Reporting