First published: Wed Feb 01 2017(Updated: )
IBM BigFix Inventory v9 allows web pages to be stored locally which can be read by another user on the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM License Metric Tool | =9.2.0 | |
HPE HP-UX | ||
IBM AIX | ||
Linux Kernel | ||
Microsoft Windows | ||
Oracle Solaris SPARC | ||
HCL BigFix Inventory | =9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8981 is classified as a moderate vulnerability due to its impact on confidentiality and the potential for unauthorized access to sensitive information.
To fix CVE-2016-8981, update to the latest version of IBM BigFix Inventory that addresses this vulnerability.
IBM BigFix Inventory v9.2 is affected by CVE-2016-8981.
CVE-2016-8981 requires local access to exploit, as it involves locally stored web pages.
Users may face risks of data exposure, as locally stored web pages can be accessed by unauthorized individuals on the same system.