CVE-2017-1220: Infoleak
Published Oct 26, 2017
·Updated
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 123860.
Affected Software
2 affected components
IBM BigFix Platform=9.2
IBM BigFix Platform=9.5
Remediation
Patch Available
Event History
Oct 26, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-1220?
CVE-2017-1220 is considered a high severity vulnerability due to the potential for unauthorized access to sensitive information.
2
How do I fix CVE-2017-1220?
To fix CVE-2017-1220, upgrade IBM Tivoli Endpoint Manager to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2017-1220?
CVE-2017-1220 affects IBM BigFix Platform versions 9.2 and 9.5.
4
What type of vulnerability is CVE-2017-1220?
CVE-2017-1220 is an information disclosure vulnerability that allows sensitive data exposure to unauthorized users.
5
Can CVE-2017-1220 lead to further attacks?
Yes, the information disclosed by CVE-2017-1220 can be exploited to launch further attacks on the system.