VYPR
Critical severity9.8NVD Advisory· Published May 20, 2019· Updated Jun 17, 2026

CVE-2019-8352

CVE-2019-8352

Description

By default, BMC PATROL Agent through 11.3.01 uses a static encryption key for encrypting/decrypting user credentials sent over the network to managed PATROL Agent services. If an attacker were able to capture this network traffic, they could decrypt these credentials and use them to execute code or escalate privileges on the network.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:bmc:patrol_agent:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:bmc:patrol_agent:*:*:*:*:*:*:*:*range: <=11.3.01
    • (no CPE)range: <=11.3.01
  • BMC/PATROL Agentdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.