CVE-2019-4061Active Exploitation(ibm / bigfix_platform)

LOWCVSS 5.3 · MEDIUM

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Prioritize remediation for ibm bigfix_platform systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

IBM BigFix Platform 9.2 and 9.5 could allow an attacker to query the relay remotely and gather information about the updates and fixlets deployed to the associated sites due to not enabling authenticated access. IBM X-Force ID: 156869.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-200

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bigfix_platform

Threat summary

  • Active exploitation appears in 1 classified signals
  • 2 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
bigfix_platform

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-27: 2Active Exploitation · 2026-02-27: 102-27
Signal classification2 categories
Active Exploitation
150.0%
General
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Loginsoft Threat Intel@Loginsoft_Intel
    Active Exploitation

    Cytellite recent detection targeting CVE-2019-4061 — Akamai Connected Cloud Visit -- https://cti.loginsoft.com/ip/192.81.129.94 #Loginsoft #Cytellite #Cybersecurity #CVE20194061 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/c2Z506Q9dX

    Post summary

    Cytellite reports recent detection of attacks exploiting CVE-2019-4061 against Akamai Connected Cloud, indicating active exploitation but providing no PoC, exploit code, patch, or detailed vulnerability information.

    0000054
    19 followersView on X
  • Loginsoft Threat Intel@Loginsoft_Intel
    General

    Cytellite recent detection targeting CVE-2019-4061 — Akamai Connected Cloud Visit -- https://cti.loginsoft.com/ip/192.81.129.94 #Loginsoft #Cytellite #Cybersecurity #CVE20194061 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/mVRfYx0o1n

    Post summary

    The post announces a recent detection by Cytellite of activity targeting CVE‑2019‑4061 on Akamai Connected Cloud, providing an IP link for further investigation but no further technical or exploit details.

    0000050
    19 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appibmbigfix_platform---

Explore more