CVE-2016-8977
CVE-2016-8977
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
01 Feb 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
IBM BigFix Inventory v9 could disclose sensitive information to an unauthorized user using HTTP GET requests. This information could be used to mount further attacks against the system.
Affected products
IBM Corporation · BigFix InventoryWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →