← back
CVE-2024-30151

HCL BigFix Service Management (SM) is susceptible to Broken Access Control Vulnerability

CVSS 8.3 HIGHEPSS 0.2%CWE-532
In short

HCL BigFix Service Management has a flaw that allows unauthorized users to bypass security restrictions and gain higher privileges than they should have, potentially exposing sensitive data or making unwanted changes to the system.

Technical detail

The application lacks proper access control mechanisms, allowing attackers to escalate privileges and access resources or perform actions beyond their authorized scope. This vulnerability permits unauthorized elevation of user permissions, potentially leading to data exposure or system compromise.

Summary generated and translated by AI from the official description.
HCL BigFix Service Management (SX) is affected by a Broken Access Control vulnerability leading to privilege escalation. This could allow unauthorized users to gain elevated privileges, bypassing intended access restrictions. This may result in exposure of sensitive data or unauthorized system modifications
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →