Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
"BigFix Platform is storing clear text credentials within the system's memory. An attacker who is able to gain administrative privileges can use a program to create a memory dump and extract the credentials. These credentials can be used to pivot further into the environment. The principle of least privilege should be applied to all BigFix deployments, limiting administrative access."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HCL Technologies BigFix Platform 安全漏洞
Vulnerability Description
HCL Technologies BigFix Platform是印度HCL Technologies公司的一套端点安全管理平台。该平台支持自动发现、管理和修复端点安全问题。 HCL Technologies BigFix Platform中存在安全漏洞,该漏洞源于程序将凭证以明文形式存储在系统内存中。攻击者可利用该漏洞转储内存并提取凭证。
CVSS Information
N/A
Vulnerability Type
N/A