IBM BigFix Inventory v9 could disclose sensitive information to an unauthorized user using HTTP GET requests. This information could be used to mount further attacks against the system.
References
Link Resource
http://www.ibm.com/support/docview.wss?uid=swg21995014 Vendor Advisory
http://www.securityfocus.com/bid/95308 Third Party Advisory VDB Entry
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2017-02-01T22:00:00

Updated: 2017-02-02T10:57:01

Reserved: 2016-10-25T00:00:00


Link: CVE-2016-8977

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-02-01T22:59:01.027

Modified: 2017-02-13T22:23:50.867


Link: CVE-2016-8977

JSON object: View

cve-icon Redhat Information

No data.

CWE