📦

bigfix_platform

Vendor: hcltech

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 40 Total Indexed
Avg. EPSS 0.34% Exploit Prob.
Latest CVE CVE-2026-21767 Apr 02

Security Vulnerability Index

Page 1 / 4
4.0 CVSS

HCL BigFix Platform is affected by insufficient authentication.  The application might allow users to access sensitive areas of the application without proper authentication.

EPSS: 0.11%
8.8 CVSS

HCL BigFix Platform is affected by insecure permissions on private cryptographic keys.  The private cryptographic keys located on a Windows host machine might be subject to overly permissive file system permissions.

EPSS: 0.10%
2.1 CVSS

HCL BigFix Web Reports' service communicates over HTTPS but exhibits a weakness in its handling of SSL certificate validation. This scenario presents a possibility of man-in-the-middle (MITM) attacks and data exposure as, if exploited, this vulnerability could potentially lead to unauthorized access.

EPSS: 0.26%
4.8 CVSS

HCL BigFix Web Reports might be subject to a Stored Cross-Site Scripting (XSS) attack, due to a potentially weak validation of user input.

EPSS: 0.22%
5.6 CVSS

HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack, due to a potentially weak validation of an API parameter.

EPSS: 0.28%
2.5 CVSS

A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.

EPSS: 0.20%
5.9 CVSS

SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability.

EPSS: 0.37%
5.7 CVSS

Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (RCE).

EPSS: 0.27%
6.7 CVSS

An attacker could potentially intercept credentials via the task manager and perform unauthorized access to the Client Deploy Tool on Windows systems.

EPSS: 0.16%
3.5 CVSS

The console may experience a service interruption when processing file names with invalid characters.

EPSS: 0.40%