CVE-2024-34399: Bmc Remedy Mid-Tier

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

**UNSUPPORTED WHEN ASSIGNED** An issue was discovered in BMC Remedy Mid Tier 7.6.04. An unauthenticated remote attacker is able to access any user account without using any password. NOTE: This vulnerability only affects products that are no longer supported by the maintainer and the impacted version for this vulnerability is 7.6.04 only.

Affected products

  • Bmc Remedy Mid-Tier: version 7.6.04 only

Published 2024-09-18. Last modified 2026-06-17.