Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-13437 | HCL BigFix Compliance is affected by inclusion of temporary files left in the production environment. An attacker might gain access to these files by indexing or retrieved via predictable URLs or misconfigured permissions, leading to information disclosure. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 17 Jun 2025 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech bigfix Compliance |
|
| CPEs | cpe:2.3:a:hcltech:bigfix_compliance:2.0.12:*:*:*:*:*:*:* | |
| Vendors & Products |
Hcltech
Hcltech bigfix Compliance |
Mon, 05 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL BigFix Compliance is affected by inclusion of temporary files left in the production environment. An attacker might gain access to these files by indexing or retrieved via predictable URLs or misconfigured permissions, leading to information disclosure. | |
| Title | HCL BigFix Compliance is affected by inclusion of temporary files left in the production environment | |
| Weaknesses | CWE-531 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-05-05T19:05:39.547Z
Reserved: 2024-07-29T21:32:16.370Z
Link: CVE-2024-42213
Updated: 2025-05-05T19:05:28.890Z
Status : Analyzed
Published: 2025-05-05T19:15:55.500
Modified: 2025-06-17T21:04:01.143
Link: CVE-2024-42213
No data.
OpenCVE Enrichment
No data.
EUVD