CVE-2016-2937: IBM Bigfix Remote Control

Medium severity, CVSS 6.5. EPSS: 1.3% chance of exploitation in the next 30 days.

IBM BigFix Remote Control before 9.1.3 allows remote attackers to obtain sensitive information or spoof e-mail transmission via a crafted POST request, related to an "untrusted information vulnerability."

Affected products

  • IBM Bigfix Remote Control: up to and including 9.1.2

Published 2016-11-30. Last modified 2026-06-17.