CVE-2025-15634
HCL BigFix WebUI is affected by a missing authorization vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A missing authorization vulnerability in HCL BigFix WebUI allows an authenticated user without proper permissions to view sensitive environmental information via direct URL access to the unauthorized page.
| CWE | CWE-862 |
| Vendor | hclsoftware |
| Product | bigfix webui |
| Published | May 9, 2026 |
Stay Ahead of the Next One
Get instant alerts for hclsoftware bigfix webui
Be the first to know when new unknown vulnerabilities affecting hclsoftware bigfix webui are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
HCLSoftware / BigFix WebUI
all versions