CVE-2019-4013: IBM Bigfix Platform

Critical severity, CVSS 9.9. EPSS: 13% chance of exploitation in the next 30 days.

IBM BigFix Platform 9.5 could allow any authenticated user to upload any file to any location on the server with root privileges. This results in code execution on underlying system with root privileges. IBM X-Force ID: 155887.

Affected products

  • IBM Bigfix Platform: from 9.5.0, up to and including 9.5.11

Published 2019-04-10. Last modified 2026-06-17.