Medium severity6.5NVD Advisory· Published Oct 26, 2017· Updated Jun 17, 2026
CVE-2017-1222
CVE-2017-1222
Description
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) does not perform an authentication check for a critical resource or functionality allowing anonymous users access to protected areas. IBM X-Force ID: 123862.
Affected products
4cpe:2.3:a:ibm:bigfix_platform:9.2:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:bigfix_platform:9.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:bigfix_platform:9.5:*:*:*:*:*:*:*
- (no CPE)range: 9.2 and 9.5
- Range: 9.2 and 9.5
Patches
Vulnerability mechanics
References
3- www.ibm.com/support/docview.wssnvdPatchVendor Advisory
- www.securityfocus.com/bid/101571nvdThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/123862nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.