CVE Database · CVE-2016-8977
CVSS v3.1
N/A
EPSS
1.10%
Published
Feb 1, 2017
Modified
May 12, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
IBM BigFix Inventory v9 could disclose sensitive information to an unauthorized user using HTTP GET requests. This information could be used to mount further attacks against the system.
Weaknesses (CWE)
Affected Products (7)
References (4)