CVE-2017-1202: IBM Bigfix Compliance
Medium severity, CVSS 5.4. EPSS: 0.8% chance of exploitation in the next 30 days.
IBM BigFix Compliance 1.7 through 1.9.91 (TEMA SUAv1 SCA SCM) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 123677.
Affected products
- IBM Bigfix Compliance: from 1.7, up to and including 1.9.91
Published 2019-02-05. Last modified 2026-06-17.