First published: Fri Oct 12 2018(Updated: )
IBM BigFix Platform 9.5 - 9.5.9 stores user credentials in plain in clear text which can be read by a local user. IBM X-Force ID: 123910.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM BigFix Platform | >=9.5<=9.5.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1231 is considered to have a medium severity due to the exposure of user credentials.
To fix CVE-2017-1231, update the IBM BigFix Platform to a version higher than 9.5.9 that addresses the credential storage issue.
IBM BigFix Platform versions from 9.5 to 9.5.9 are affected by CVE-2017-1231.
The impact of CVE-2017-1231 includes unauthorized access to user credentials, compromising the security of the affected system.
While the recommended solution is to upgrade the software, limiting user access to the system can act as a temporary workaround for CVE-2017-1231.