Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39542 | BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme. |
Thu, 23 Jan 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jan 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme. It could allow a malicious operator to attempt to download files using the file:// URI scheme. | |
| Title | HCL BigFix Patch Download Plug-ins are affected by insecure support for file URI scheme | |
| Weaknesses | CWE-84 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-01-23T14:53:08.031Z
Reserved: 2024-07-29T21:32:05.158Z
Link: CVE-2024-42184
Updated: 2025-01-23T14:52:39.755Z
Status : Deferred
Published: 2025-01-23T03:15:08.727
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-42184
No data.
OpenCVE Enrichment
No data.
EUVD