HCL Technologies BigFix Platform是印度HCL Technologies公司的一套端点安全管理平台。该平台支持自动发现、管理和修复端点安全问题。 HCL Technologies BigFix Platform 存在安全漏洞,该漏洞源于 Web 响应中缺少几个与安全相关的标头或配置错误。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | BigFix Platform | 9.5 - 9.5.18, 10 - 10.0.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-27764 | 7.4 HIGH | HCL BigFix WebUI Cookie missing attributes |
| CVE-2021-27765 | 6.7 MEDIUM | HCL BigFix Platform Server API is affected by Privilege Escalation Vulnerability |
| CVE-2021-27766 | 6.7 MEDIUM | HCL BigFix Platform Client is affected by a Privilege Escalation Vulnerability |
| CVE-2021-27767 | 6.7 MEDIUM | HCL BigFix Platform Console is affected by a Privilege Escalation Vulnerability |
| CVE-2021-27761 | 4.8 MEDIUM | HCL BigFix Platform is affected by weak web transport security |
| CVE-2021-27760 | 4.6 MEDIUM | HCL Notes 11.0 - 11.0.1 FP4 Sametime Embedded chat clients are vulnerable to group chats l |
| CVE-2021-27751 | 4.4 MEDIUM | HCL Commerce is affected by an Insufficient Session Expiration vulnerability. |
| CVE-2021-27758 | 4.3 MEDIUM | HCL BigFix Platform 跨站请求伪造漏洞 |
| CVE-2021-27759 | 2.3 LOW | HCL Technologies BigFix Platform 数据伪造问题漏洞 |
No comments yet