Description
HCL BigFix SM is affected by a Sensitive Information Exposure vulnerability where internal connections do not use TLS encryption which could allow an attacker unauthorized access to sensitive data transmitted between internal components.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-26120 | HCL BigFix SM is affected by a Sensitive Information Exposure vulnerability where internal connections do not use TLS encryption which could allow an attacker unauthorized access to sensitive data transmitted between internal components. |
References
History
Wed, 29 Oct 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech bigfix Service Management |
|
| CPEs | cpe:2.3:a:hcltech:bigfix_service_management:23.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Hcltech
Hcltech bigfix Service Management |
Thu, 28 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 28 Aug 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL BigFix SM is affected by a Sensitive Information Exposure vulnerability where internal connections do not use TLS encryption which could allow an attacker unauthorized access to sensitive data transmitted between internal components. | |
| Title | HCL BigFix Service Management (SM) is affected by a Sensitive Information Exposure vulnerability | |
| Weaknesses | CWE-319 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-08-28T17:14:41.728Z
Reserved: 2025-04-01T18:46:26.620Z
Link: CVE-2025-31972
Updated: 2025-08-28T17:14:38.605Z
Status : Analyzed
Published: 2025-08-28T17:15:35.270
Modified: 2025-10-29T18:11:33.490
Link: CVE-2025-31972
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD