Home
MEDIUM: 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:LDefault status
unaffected
2.0.11
affected
Description
HCL BigFix Compliance is affected by unvalidated redirects and forwards. The HOST header can be manipulated by an attacker and as a result, it can poison the web cache and provide back to users being served the page.
Problem types
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Product status
2.0.11
References
support.hcl-software.com/...rticle&sysparm_article=KB0117197
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.