Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
bigfix remote control vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2016-2950
SQL injection vulnerability in IBM BigFix Remote Control prior to 9.1.3 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Ibm Bigfix Remote Control
3.7
CVSSv3
CVE-2016-2952
IBM BigFix Remote Control prior to 9.1.3 does not enable the HSTS protection mechanism, which makes it easier for remote malicious users to obtain sensitive information by leveraging use of HTTP.
Ibm Bigfix Remote Control
5.9
CVSSv3
CVE-2016-2927
IBM BigFix Remote Control prior to 9.1.3 does not properly restrict the set of available encryption algorithms, which makes it easier for remote malicious users to defeat cryptographic protection mechanisms by sniffing the network and performing calculations on encrypted data.
Ibm Bigfix Remote Control
4.3
CVSSv3
CVE-2016-2928
IBM BigFix Remote Control prior to 9.1.3 allows remote authenticated users to obtain sensitive information by reading error logs.
Ibm Bigfix Remote Control
5.3
CVSSv3
CVE-2016-2932
IBM BigFix Remote Control prior to 9.1.3 allows remote malicious users to conduct XML injection attacks via unspecified vectors.
Ibm Bigfix Remote Control
6.8
CVSSv3
CVE-2016-2933
Directory traversal vulnerability in IBM BigFix Remote Control prior to 9.1.3 allows remote authenticated administrators to read arbitrary files via a crafted request.
Ibm Bigfix Remote Control
1.9
CVSSv3
CVE-2016-2943
IBM BigFix Remote Control prior to 9.1.3 allows local users to obtain sensitive information by leveraging unspecified privileges to read a log file.
Ibm Bigfix Remote Control
8.8
CVSSv3
CVE-2016-2963
Cross-site request forgery (CSRF) vulnerability in IBM BigFix Remote Control prior to 9.1.3 allows remote malicious users to hijack the authentication of arbitrary users for requests that insert XSS sequences.
Ibm Bigfix Remote Control
7.8
CVSSv3
CVE-2016-2948
IBM BigFix Remote Control prior to 9.1.3 allows local users to discover hardcoded credentials via unspecified vectors.
Ibm Bigfix Remote Control 9.1.2
7.5
CVSSv3
CVE-2016-2930
IBM BigFix Remote Control 9.1.3 could allow a remote malicious user to perform actions reserved for an administrator without authentication. IBM X-Force ID: 5512.
Ibm Bigfix Remote Control 9.1.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
NEXT »