Home

Description

HHCL BigFix Service Management (SM) is affected by a Cross‑Site Request Forgery (CSRF) vulnerability. This could lead to unauthorized changes or exposure of sensitive data.

PUBLISHED Reserved 2025-04-01 | Published 2026-05-06 | Updated 2026-05-06 | Assigner HCL




LOW: 2.6CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N

Problem types

CWE-352: Cross-Site Request Forgery (CSRF).

Product status

Default status
unaffected

23
affected

References

support.hcl-software.com/...rticle&sysparm_article=KB0128144

cve.org (CVE-2025-31957)

nvd.nist.gov (CVE-2025-31957)

Download JSON