CVE-2017-1232: Medium severity hcltech bigfix platform vulnerability
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. IBM X-Force ID: 123911.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1232?
CVE-2017-1232 is rated as a high severity vulnerability due to the transmission of sensitive data in cleartext.
How do I fix CVE-2017-1232?
To fix CVE-2017-1232, you should implement secure transmission protocols and update IBM Tivoli Endpoint Manager to the latest version.
What systems are affected by CVE-2017-1232?
CVE-2017-1232 affects IBM BigFix Platform versions 9.2 and 9.5.
What type of data is at risk with CVE-2017-1232?
CVE-2017-1232 exposes sensitive or security-critical data that can be intercepted by unauthorized actors.
Is there a workaround for CVE-2017-1232?
While the best practice is to update the software, using tunneling or VPN solutions can temporarily mitigate the risks of cleartext communications.