VulnSea

bigfix_modern_client_management vulnerabilities

CVEs whose affected-version data names the bigfix_modern_client_management package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

4 CVEsRSS

CVE-2025-0277Medium· 6.5
11mo ago

HCL BigFix Mobile 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP)

HCL BigFix Mobile 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP). An attacker could trick users into performing actions by not properly restricting the sources of scripts and other…

▾ Sunlithcltech · bigfix_mobileEPSS 0.30%via NVD
CVE-2025-0276Medium· 6.5
11mo ago

HCL BigFix Modern Client Management (MCM) 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP)

HCL BigFix Modern Client Management (MCM) 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP). An attacker could trick users into performing actions by not properly restricting the sour…

▾ Sunlithcltech · bigfix_mobileEPSS 0.30%via NVD
CVE-2025-0275Medium· 5.3
11mo ago

HCL BigFix Mobile 3.3 and earlier is affected by improper access control

HCL BigFix Mobile 3.3 and earlier is affected by improper access control. Unauthorized users can access a small subset of endpoint actions, potentially allowing access to select internal functions.

▾ Sunlithcltech · bigfix_mobileEPSS 0.26%via NVD
CVE-2025-0274Medium· 5.3
11mo ago

HCL BigFix Modern Client Management (MCM) 3.3 and earlier is affected by improper access control

HCL BigFix Modern Client Management (MCM) 3.3 and earlier is affected by improper access control. Unauthorized users can access a small subset of endpoint actions, potentially allowing access to select internal functions.

▾ Sunlithcltech · bigfix_mobileEPSS 0.26%via NVD
bigfix_modern_client_management vulnerabilities (CVEs) · VulnSea