Cross-Site Scripting Vulnerability in IBM Tivoli Endpoint Manager
CVE-2017-1203
6.1MEDIUM
What is CVE-2017-1203?
The IBM Tivoli Endpoint Manager platform and applications suffer from a cross-site scripting flaw. This vulnerability enables attackers to inject arbitrary JavaScript code through the Web UI, potentially compromising the functionality of the platform. Users in a trusted session may inadvertently disclose their credentials, leading to unauthorized access and data breaches. Organizations utilizing this software must prioritize mitigating this risk to safeguard their sensitive information.
Affected Version(s)
BigFix family 9.1
BigFix family 9.2
BigFix family 9.5