CVE-2015-4953: IBM Bigfix Remote Control

Medium severity, CVSS 4.8. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM BigFix Remote Control before Interim Fix pack 9.1.2-TIV-IBRC912-IF0001 makes it easier for man-in-the-middle attackers to decrypt traffic by leveraging a weakness in its encryption protocol. IBM X-Force ID: 105197.

Affected products

  • IBM Bigfix Remote Control: version 9.1.2 only

Published 2018-03-29. Last modified 2026-06-17.