VendorsIBMbigfix_platformall versions
Vulnerabilities

IBM BigFix Platform

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

44CVEs
CVE-2017-1226
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) generates an error message in error logs that includes sensitive information about its environment which could be used in further attacks against the system. IBM X-Force ID: 123905.
Published 2017-10-26 · Modified
4.3EPSS 0.010
CVE-2016-0297
IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) could allow a remote attacker to obtain sensitive information due to a missing HTTP Strict-Transport-Security Header through man in the middle techniques.
Published 2017-02-01 · Modified
4.3EPSS 0.009
CVE-2018-2005
IBM BigFix Platform 9.2 and 9.5 stores potentially sensitive information in process memory that could be read by a local attacker with elevated permissions. IBM X-Force ID: 155007
Published 2019-05-20 · Modified
3.3EPSS 0.003
CVE-2016-0296
IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) stores potentially sensitive information in log files that could be available to a local user.
Published 2017-02-01 · Modified
3.3EPSS 0.003
← Prev2 / 2