IBM BigFix Inventory v9 9.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials. IBM X-Force ID: 118853.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.ibm.com/support/docview.wss?uid=swg21995024 | vendor advisory |
http://www.securitytracker.com/id/1038919 | third party advisory vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/118853 | vdb entry vendor advisory |
http://www.securityfocus.com/bid/99548 | third party advisory vdb entry |