CVE-2019-4301
CVE-2019-4301
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
28 Feb 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
BigFix Self-Service Application (SSA) is vulnerable to arbitrary code execution if Javascript code is included in Running Message or Post Message HTML.
Affected products
IBM Corporation · HCL BigFix Self-Service Application (SSA)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →