Back

LOW

HCL BigFix Service Management is affected by multiple security vulnerabilities.

Published Sep 18, 2026

Description

HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an attacker to craft a malicious web page that interacts with the vulnerable application, enabling unauthorized access to protected resources and restricted APIs on behalf of a victim.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner HCL
Published Sep 18, 2026
Updated Sep 18, 2026
Reserved Jun 22, 2026
CISA Vulnrichment
Updated Sep 18, 2026
NVD
Status Undergoing Analysis
Modified Sep 18, 2026
Red Hat
Severity n/a
Public date n/a