Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown
CVE-2017-1198
Disclosure Date: February 05, 2019 (last updated November 27, 2024)
IBM BigFix Compliance 1.7 through 1.9.91 (TEMA SUAv1 SCA SCM) stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 123673.
0
Attacker Value
Unknown
CVE-2017-1201
Disclosure Date: October 05, 2017 (last updated November 26, 2024)
IBM BigFix Compliance Analytics 1.9.79 (TEMA SUAv1 SCA SCM) stores user credentials in clear text which can be read by a local user. IBM X-Force ID: 123676.
0
Attacker Value
Unknown
CVE-2017-1197
Disclosure Date: June 15, 2017 (last updated November 26, 2024)
IBM BigFix Compliance (TEMA SUAv1 SCA SCM) uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 123672.
0
Attacker Value
Unknown
CVE-2017-1179
Disclosure Date: June 08, 2017 (last updated November 26, 2024)
IBM BigFix Compliance Analytics 1.9.79 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 123431.
0
Attacker Value
Unknown
CVE-2017-1196
Disclosure Date: June 07, 2017 (last updated November 26, 2024)
IBM BigFix Compliance (TEMA SUAv1 SCA SCM) 1.9.70 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 123671.
0
Attacker Value
Unknown
CVE-2017-1178
Disclosure Date: June 07, 2017 (last updated November 26, 2024)
IBM Endpoint Manager for Security and Compliance 1.9.70 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 123430.
0