CVE-2016-0297
- EPSS 0.18%
- Published 01.02.2017 20:59:00
- Last modified 20.04.2025 01:37:25
IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) could allow a remote attacker to obtain sensitive information due to a missing HTTP Strict-Transport-Security Header through man in the middle techniques.
CVE-2016-0296
- EPSS 0.05%
- Published 01.02.2017 20:59:00
- Last modified 20.04.2025 01:37:25
IBM Tivoli Endpoint Manager - Mobile Device Management (MDM) stores potentially sensitive information in log files that could be available to a local user.
CVE-2016-0293
- EPSS 0.23%
- Published 01.09.2016 01:59:01
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in IBM BigFix Platform (formerly Tivoli Endpoint Manager) 9.x before 9.1.8 and 9.2.x before 9.2.8 allows remote attackers to inject arbitrary web script or HTML via a modified .beswrpt file.
CVE-2016-0269
- EPSS 0.17%
- Published 15.07.2016 18:59:01
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in IBM BigFix Platform 9.x before 9.1.8 and 9.2.x before 9.2.7 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.