IBM BigFix Compliance 1.7 through 1.9.91 (TEMA SUAv1 SCA SCM) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. IBM X-Force ID: 123677.
| Software | From | Fixed in |
|---|---|---|
| ibm / bigfix_compliance | 1.7 | 1.9.91.x |