A vulnerability classified as critical has been found in BMC FootPrints up to 20.24.01.001 . This issue affects some unknown processing of the component ASP.NET Servlet . The manipulation of the argument VIEWSTATE leads to deserialization. This vulnerability is uniquely identified as CVE-2025-71260 . The attack is possible to be carried out remotely. No exploit exists.