Medium severity5.3NVD Advisory· Published Oct 26, 2017· Updated Jun 17, 2026
CVE-2017-1230
CVE-2017-1230
Description
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) uses insufficiently random numbers or values in a security context that depends on unpredictable numbers. This weakness may allow attackers to expose sensitive information by guessing tokens or identifiers. IBM X-Force ID: 123909.
Affected products
4cpe:2.3:a:ibm:bigfix_platform:9.2:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:ibm:bigfix_platform:9.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:bigfix_platform:9.5:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
3- www.ibm.com/support/docview.wssnvdPatchVendor Advisory
- www.securityfocus.com/bid/101571nvdThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/123909nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.