Known Vulnerabilities for Control-m by Bmc
Listed below are 2 of the newest known vulnerabilities associated with "Control-m" by "Bmc".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-103858 json | MISP contains an incomplete authorization check in the discussion posting functionality. When a user submits a post to a thre... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103758 json | Obot 0.21.1 through 0.24.1 contains an authorization bypass vulnerability that allows authenticated users to reach MCP server... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103659 json | MISP contains an authorization bypass in the event flattening feature. When a user requests an event with the flatten option ... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103442 json | External control of system or configuration setting vulnerability in The Wikimedia Foundation MediaWiki CentralAuth extension... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-103341 json | Missing Authorization vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) ... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103340 json | Missing Authorization vulnerability in Gemini Labs Site Reviews site-reviews allows Exploiting Incorrectly Configured Access ... | Not Provided | 2026-10-01 | 2026-10-01 |
| CVE-2026-103270 json | LightLLM through 1.2.0 mounts reinforcement learning control routes on the public HTTP API without authentication checks. Una... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-103105 json | Pexip Infinity before 38.2, plus 39.0, 39.1 and 40.0, is affected by improper access control on a product-internal API which ... | Not Provided | 2026-09-30 | 2026-09-30 |
| CVE-2026-103042 json | LightLLM through 1.2.0 contains a memory exhaustion vulnerability in the NCCL control channel when started with --pd_trans_mo... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102761 json | NetX Duo's WebSocket client resets the unmasking cursor to the first `NX_PACKET` each time it advances through a chained pack... | Not Provided | 2026-09-29 | 2026-09-30 |