漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
HCL BigFix Service Management (SM) is susceptible to Broken Access Control Vulnerability
Vulnerability Description
HCL BigFix Service Management (SX) is affected by a Broken Access Control vulnerability leading to privilege escalation. This could allow unauthorized users to gain elevated privileges, bypassing intended access restrictions. This may result in exposure of sensitive data or unauthorized system modifications
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Vulnerability Type
通过日志文件的信息暴露
Vulnerability Title
HCL BigFix Service Management 日志信息泄露漏洞
Vulnerability Description
HCL BigFix Service Management是印度HCL公司的一款IT服务管理与资产运营平台。 HCL BigFix Service Management存在日志信息泄露漏洞,该漏洞源于访问控制失效,可能导致权限提升,允许未经授权的用户获得更高权限,绕过预期访问限制,可能导致敏感数据暴露或未经授权的系统修改。
CVSS Information
N/A
Vulnerability Type
N/A