First published: Wed Nov 30 2016(Updated: )
IBM BigFix Remote Control before 9.1.3 allows remote attackers to conduct XML injection attacks via unspecified vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM BigFix Remote Control | <=9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-2932 has a critical severity level as it allows remote attackers to conduct XML injection attacks.
To fix CVE-2016-2932, upgrade IBM BigFix Remote Control to version 9.1.3 or later.
CVE-2016-2932 could allow attackers to manipulate XML data in the application, potentially compromising system integrity.
Versions of IBM BigFix Remote Control prior to 9.1.3 are affected by CVE-2016-2932.
Check if your installation of IBM BigFix Remote Control is running a version below 9.1.3 to determine vulnerability to CVE-2016-2932.