CVE-2014-4874: Bmc Track-It!

Medium severity, CVSS 4.0. EPSS: 8.9% chance of exploitation in the next 30 days.

BMC Track-It! 11.3.0.355 allows remote authenticated users to read arbitrary files by visiting the TrackItWeb/Attachment page.

Affected products

  • Bmc Track-It!: version 11.3.0.355 only

Published 2014-10-10. Last modified 2026-06-17.