CNNVD-202509-2515 Information

CNNVD ID

CNNVD-202509-2515

CVE-2025-55112

  • CNNVD Published: 2025-09-16

Description (Chinese)

BMC Control-M是BMC公司的一个应用程序。简化了本地或作为服务的应用程序和数据工作流编排。 BMC Control-M 9.0.18版本至9.0.20版本存在安全漏洞,该漏洞源于使用硬编码密钥的Blowfish加密算法,可能导致网络流量被解密。

Description (English)

BMC Control-M is an application of BMC. Simplified local or service-based applications and data workflow. BMC Control-M versions 9.0.18 to 9.0.20 contain a security loophole, which arises from the Blowfish encryption algorithm using a hard-coding key and may lead to the decryption of network traffic.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

BMC

Published

2025-09-16

Last Modified

2026-02-24

References

https://bmcapps.my.site.com/casemgmt/sc_KnowledgeArticle?sfdcid=000441966 https://bmcapps.my.site.com/casemgmt/sc_KnowledgeArticle?sfdcid=000442099 https://access.redhat.com/security/cve/cve-2025-55112

Patch

https://www.bmc.com/available/edownloads.html

Share on: