← Vulnerability feed

Vulnerability record · CVE-2021-35002 · published 7 May 2024

CVE-2021-35002: Bmc track-it\! unrestricted file upload vulnerability

Bmc · Track It\!

BMC Track-It! Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of BMC Track-It!. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of email attachments. The issue results from the lack of proper validation of user-supplied data, which can allow the upload of arbitrary files. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-14122.

8.8 CVSS 3.1 High EPSS 1.7% · top 24.4% CWE-434 · Unrestricted file upload
8.8CVSS 3.1 base score
1.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

BMC Track-It! Unrestricted File Upload Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of BMC Track-It!. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of email attachments. The issue results from the lack of proper validation of user-supplied data, which can allow the upload of arbitrary files. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-14122.

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-35002 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-35865Bmc track-it\! missing authentication for critical function vulnerabilityThis vulnerability allows remote attackers to execute arbitrary code on affected installations of BMC Track-It! 20.21.2.109. Authentication is not re…EPSS 1.9%9.8CVE-2022-24047Bmc track-it\! authentication bypass via alternate path vulnerabilityThis vulnerability allows remote attackers to bypass authentication on affected installations of BMC Track-It! 20.21.01.102. Authentication is not re…EPSS 1.9%9.8CVE-2016-6598Bmc track-it\! improper access control vulnerabilityBMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting file storage service (FileStorageService) on port 9010. This service cont…EPSS 19%9.8CVE-2016-6599Bmc track-it\! vulnerabilityBMC Track-It! 11.4 before Hotfix 3 exposes an unauthenticated .NET remoting configuration service (ConfigurationService) on port 9010. This service c…EPSS 12%7.5CVE-2014-4872BMC Track-It! unauthenticated .NET Remoting service allows file upload and code executionBMC Track-It! 11.3.0.355 exposes TCP port 9010 without requiring authentication, and its FileStorageService and ConfigurationService accept .NET Remo…EPSS 79%analysed6.5CVE-2021-35001Bmc track-it\! missing authorization vulnerabilityBMC Track-It! GetData Missing Authorization Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive in…EPSS 0.76%6.5CVE-2022-35864Bmc track-it\! sql injection vulnerabilityThis vulnerability allows remote attackers to disclose sensitive information on affected installations of BMC Track-It! 20.21.02.109. Authentication …EPSS 1.6%6.5CVE-2014-4873Bmc track-it\! sql injection vulnerabilitySQL injection vulnerability in TrackItWeb/Grid/GetData in BMC Track-It! 11.3.0.355 allows remote authenticated users to execute arbitrary SQL command…EPSS 4.2%

Source: NIST National Vulnerability Database (record CVE-2021-35002), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.