Vulnerability Description
IBM BigFix Compliance (TEMA SUAv1 SCA SCM) 1.9.70 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 123671.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Bigfix Security Compliance Analytics | 1.9.70 |
Related Weaknesses (CWE)
References
- http://www.ibm.com/support/docview.wss?uid=swg22004168Vendor Advisory
- http://www.securityfocus.com/bid/98911Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/123671VDB EntryVendor Advisory
- http://www.ibm.com/support/docview.wss?uid=swg22004168Vendor Advisory
- http://www.securityfocus.com/bid/98911Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/123671VDB EntryVendor Advisory
FAQ
What is CVE-2017-1196?
CVE-2017-1196 is a vulnerability with a CVSS score of 9.8 (CRITICAL). IBM BigFix Compliance (TEMA SUAv1 SCA SCM) 1.9.70 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: ...
How severe is CVE-2017-1196?
CVE-2017-1196 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2017-1196?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Bigfix Security Compliance Analytics.