Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption
Vulnerability Description
HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption due to port 80 (HTTP) being open, allowing unencrypted access. An attacker with access to the network traffic can sniff packets from the connection and uncover the data.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
敏感数据的明文传输
Vulnerability Title
HCL BigFix Service Management Discovery 安全漏洞
Vulnerability Description
HCL BigFix Service Management Discovery是印度HCL公司的一款IT资产与服务依赖关系发现工具。 HCL BigFix Service Management Discovery存在安全漏洞,该漏洞源于端口80开放导致加密未强制执行,可能导致攻击者通过网络流量嗅探数据包并揭露数据。
CVSS Information
N/A
Vulnerability Type
N/A