PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Dec 9, 2025

IBM BigFix Platform - Information Disclosure

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsurl
CostFree
3k
Times Used
continuous scan runs
0
Continuously Checked
assets under CS
5
Vulnerabilities Found
confirmed findings
References
CVECVE-2019-4061
5.3
CVSSmedium
Exploitable remotely over the internet · no authentication required.

IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather information about the updates and fixlets deployed to the associated sites due to not enabling authenticated access. IBM X-Force ID: 156869.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
BigFix Platformby IBM
9.2
Updated Sep 9, 2026View on NVD →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.