ET Labs@ET_LabsDisclosure
The post announces a set of newly identified CVEs across various products as part of a ruleset update, providing no additional technical or exploit information.
Autumn Good@autumn_good_35Active Exploitation
The post enumerates CVEs and indicates that threat actors are actively exploiting them via pre-auth remote code execution chains on BMC FootPrints, though no PoC, patch, or exploit code is shared.
bigmacd@bigmacd16684Active Exploitation
The text announces critical vulnerabilities in BMC FootPrints and confirms they are being exploited in the wild by watchTowr with pre-auth capabilities.
pdnuclei-bot@pdnuclei_botDisclosure
The tweet announces the discovery of a high‑severity SSRF vulnerability (CVE-2025-71259) in BMC FootPrints, but does not provide a PoC, exploit, patch, or evidence of active exploitation.
CCB Alert@CCBalertPatch
The post discloses a chain of four pre‑authentication RCE vulnerabilities in BMC FootPrints and urges users to apply patches, with a link highlighting threat actor activity.
CVE@CVEnewDisclosure
The passage discloses a blind SSRF vulnerability (CVE‑2025‑71259) affecting BMC FootPrints ITSM versions 20.20.02 through 20.24.01.001 within the externalfeed/RSS API component, with no PoC, exploitation, or patch information provided.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
This entry announces the discovery of a blind SSRF vulnerability (CVE‑2025‑71259) affecting specific versions of BMC FootPrints ITSM, without providing PoC or exploit details.