Account Lockout Vulnerability in IBM BigFix Compliance
CVE-2017-1197 
9.8CRITICAL
What is CVE-2017-1197?
IBM BigFix Compliance has a vulnerability related to insufficient account lockout settings, which could be exploited by a remote attacker to perform brute force attacks on user credentials. This oversight may lead to unauthorized access if an attacker successfully guesses a credential.
Affected Version(s)
BigFix Compliance Analytics 1.9.79