Bigfix Platform
HCL · 33 CVEs
HCL BigFix Platform is affected by insufficient authentication
Apr 1, 2026
HCL BigFix Platform is affected by insecure permissions on private cryptographic keys
Apr 1, 2026
HCL BigFix Web Reports is susceptible to a Man-In-The-Middle (MITM) attack
Apr 15, 2025
HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack
Apr 15, 2025
HCL BigFix Web Reports is potentially susceptible to a Stored Cross-Site Scripting (XSS) attack
Apr 15, 2025
HCL BigFix Platform is affected by a DLL Hijack vulnerability
Oct 14, 2024
HCL BigFix Platform is impacted by a failure to restrict SSL/TLS renegotiation
May 17, 2024
HCL BigFix Platform is susceptible to Cross-Site Request Forgery
May 17, 2024
HCL BigFix Platform is susceptible to insufficiently protected credentials
May 17, 2024
HCL BigFix Platform is susceptible to a Denial of Service attack
Mar 28, 2024
HCL BigFix Platform is susceptible to Cross Site Scripting (XSS) and/or Man in the Middle (MITM) attack
Mar 28, 2024
HCL BigFix Platform is susceptible to Server Side Request Forgery (SSRF)
Mar 28, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 3, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 2, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 2, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 2, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 2, 2024
A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform
Feb 2, 2024
HCL BigFix Platform is affected by Unathenticated Stored Cross-Site Scripting (XSS)
Dec 21, 2023
HCL BigFix Platform is affected by Unathenticated Stored Cross-Site Scripting (XSS)
Dec 21, 2023
HCL BigFix Platform is vulnerable to an integer overflow in xerces-c++ 3.2.3
Oct 11, 2023
HCL BigFix Platform is affected by insufficient warnings
Dec 17, 2022
HCL BigFix Platform is affected by insecure credential storage
Dec 17, 2022
HCL BigFix Web Reports authorized users may perform HTML injection.
Jul 19, 2022
HCL BigFix Web Reports authorized users may see sensitive information in clear text
Jul 19, 2022
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-21767 | HCL BigFix Platform is affected by insufficient authentication | MEDIUM | 0.11% | Apr 1, 2026 |
| CVE-2026-21765 | HCL BigFix Platform is affected by insecure permissions on private cryptographic keys | HIGH | 0.10% | Apr 1, 2026 |
| CVE-2024-42193 | HCL BigFix Web Reports is susceptible to a Man-In-The-Middle (MITM) attack | LOW | 0.27% | Apr 15, 2025 |
| CVE-2024-42189 | HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack | MEDIUM | 0.30% | Apr 15, 2025 |
| CVE-2024-42200 | HCL BigFix Web Reports is potentially susceptible to a Stored Cross-Site Scripting (XSS) attack | MEDIUM | 0.23% | Apr 15, 2025 |
| CVE-2024-30117 | HCL BigFix Platform is affected by a DLL Hijack vulnerability | MEDIUM | 0.20% | Oct 14, 2024 |
| CVE-2024-23556 | HCL BigFix Platform is impacted by a failure to restrict SSL/TLS renegotiation | HIGH | 0.37% | May 17, 2024 |
| CVE-2024-23554 | HCL BigFix Platform is susceptible to Cross-Site Request Forgery | HIGH | 0.27% | May 17, 2024 |
| CVE-2024-23583 | HCL BigFix Platform is susceptible to insufficiently protected credentials | MEDIUM | 0.16% | May 17, 2024 |
| CVE-2023-45715 | HCL BigFix Platform is susceptible to a Denial of Service attack | MEDIUM | 0.40% | Mar 28, 2024 |
| CVE-2023-45706 | HCL BigFix Platform is susceptible to Cross Site Scripting (XSS) and/or Man in the Middle (MITM) attack | MEDIUM | 0.26% | Mar 28, 2024 |
| CVE-2023-45705 | HCL BigFix Platform is susceptible to Server Side Request Forgery (SSRF) | HIGH | 0.37% | Mar 28, 2024 |
| CVE-2023-37528 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.34% | Feb 3, 2024 |
| CVE-2024-23553 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.26% | Feb 2, 2024 |
| CVE-2023-37531 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.36% | Feb 2, 2024 |
| CVE-2023-37530 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.34% | Feb 2, 2024 |
| CVE-2023-37529 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.34% | Feb 2, 2024 |
| CVE-2023-37527 | A cross-site scripting (XSS) vulnerability affects HCL BigFix Platform | MEDIUM | 0.36% | Feb 2, 2024 |
| CVE-2023-37520 | HCL BigFix Platform is affected by Unathenticated Stored Cross-Site Scripting (XSS) | HIGH | 0.25% | Dec 21, 2023 |
| CVE-2023-37519 | HCL BigFix Platform is affected by Unathenticated Stored Cross-Site Scripting (XSS) | HIGH | 0.25% | Dec 21, 2023 |
| CVE-2023-37536 | HCL BigFix Platform is vulnerable to an integer overflow in xerces-c++ 3.2.3 | HIGH | 1.38% | Oct 11, 2023 |
| CVE-2022-42453 | HCL BigFix Platform is affected by insufficient warnings | MEDIUM | 0.27% | Dec 17, 2022 |
| CVE-2022-38659 | HCL BigFix Platform is affected by insecure credential storage | HIGH | 0.13% | Dec 17, 2022 |
| CVE-2022-27545 | HCL BigFix Web Reports authorized users may perform HTML injection. | MEDIUM | 0.34% | Jul 19, 2022 |
| CVE-2022-27544 | HCL BigFix Web Reports authorized users may see sensitive information in clear text | MEDIUM | 0.46% | Jul 19, 2022 |
Showing 1 to 25 of 33 CVEs