Ibm Bigfix Platform vulnerabilities

44 known vulnerabilities affecting ibm/bigfix_platform.

Total CVEs
44
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH11MEDIUM24LOW5

Vulnerabilities

Page 3 of 3
CVE-2016-0297LOWCVSS 3.7v9.0v9.1+2 more2017-02-01
CVE-2016-0297 [LOW] CWE-200 CVE-2016-0297: IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) could allow a remote attacker to obtain IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) could allow a remote attacker to obtain sensitive information due to a missing HTTP Strict-Transport-Security Header through man in the middle techniques.
nvd
CVE-2016-0296LOWCVSS 3.3v9.0v9.1+2 more2017-02-01
CVE-2016-0296 [LOW] CWE-532 CVE-2016-0296: IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) stores potentially sensitive informatio IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) stores potentially sensitive information in log files that could be available to a local user.
nvd
CVE-2016-0293MEDIUMCVSS 6.1v9.2.0v9.2.1+15 more2016-09-01
CVE-2016-0293 [MEDIUM] CWE-79 CVE-2016-0293: Cross-site scripting (XSS) vulnerability in IBM BigFix Platform (formerly Tivoli Endpoint Manager) 9 Cross-site scripting (XSS) vulnerability in IBM BigFix Platform (formerly Tivoli Endpoint Manager) 9.x before 9.1.8 and 9.2.x before 9.2.8 allows remote attackers to inject arbitrary web script or HTML via a modified .beswrpt file.
nvd
CVE-2016-0269MEDIUMCVSS 5.4v9.2.0v9.2.1+14 more2016-07-15
CVE-2016-0269 [MEDIUM] CWE-79 CVE-2016-0269: Cross-site scripting (XSS) vulnerability in IBM BigFix Platform 9.x before 9.1.8 and 9.2.x before 9. Cross-site scripting (XSS) vulnerability in IBM BigFix Platform 9.x before 9.1.8 and 9.2.x before 9.2.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
nvd
Ibm Bigfix Platform vulnerabilities | cvebase