CVE-2017-9453: Bmc Server Automation

Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.

BMC Server Automation before 8.9.01 patch 1 allows Process Spawner command execution because of authentication bypass.

Affected products

  • Bmc Server Automation: up to and including 8.9.01

Published 2023-09-05. Last modified 2026-06-17.