๐Ÿ” CVE Alert

CVE-2025-15634

UNKNOWN 0.0

HCL BigFix WebUI is affected by a missing authorization vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A missing authorization vulnerability in HCL BigFix WebUI allows an authenticated user without proper permissions to view sensitive environmental information via direct URL access to the unauthorized page.

CWE CWE-862
Vendor hclsoftware
Product bigfix webui
Published May 9, 2026
Stay Ahead of the Next One

Get instant alerts for hclsoftware bigfix webui

Be the first to know when new unknown vulnerabilities affecting hclsoftware bigfix webui are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

HCLSoftware / BigFix WebUI
all versions

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.hcl-software.com: https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0130587