Hcltech

Bigfix Webui Api

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 09.05.2026 05:05:33
  • Zuletzt bearbeitet 25.07.2026 11:10:00

A missing authorization vulnerability in HCL BigFix WebUI allows an authenticated user without proper permissions to view sensitive environmental information via direct URL access to the unauthorized page.

  • EPSS 0.23%
  • Veröffentlicht 09.05.2026 04:58:55
  • Zuletzt bearbeitet 25.07.2026 11:10:00

An improper authorization vulnerability in HCL BigFix WebUI allows an authenticated user without Master Operator privileges to access internal data (site names, versions, and configuration variables) and bypass privilege requirements via unprotected ...