IBM Tivoli Endpoint Manager (IBM BigFix 9.2 and 9.5) does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 123861.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/123861 | Issue Tracking VDB Entry Vendor Advisory |
http://www.ibm.com/support/docview.wss?uid=swg22010177 | Issue Tracking Vendor Advisory |
http://www.securityfocus.com/bid/101683 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-11-13 15:29
Updated : 2019-10-02 17:03
NVD link : CVE-2017-1221
Mitre link : CVE-2017-1221
JSON object : View
CWE
CWE-521
Weak Password Requirements
Products Affected
ibm
- bigfix_platform