Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-23008 | Improper access restrictions in HCL BigFix Remote Control Server WebUI (versions 10.1.0.0248 and lower) allow non-admin users to view unauthorized information on certain web pages. |
Wed, 30 Jul 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech bigfix Remote Control |
|
| Vendors & Products |
Hcltech
Hcltech bigfix Remote Control |
Tue, 29 Jul 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 29 Jul 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper access restrictions in HCL BigFix Remote Control Server WebUI (versions 10.1.0.0248 and lower) allow non-admin users to view unauthorized information on certain web pages. | |
| Title | HCL BigFix Remote Control is affected by an authorization bypass vulnerability | |
| Weaknesses | CWE-305 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-07-29T18:32:30.900Z
Reserved: 2025-04-01T18:46:23.152Z
Link: CVE-2025-31965
Updated: 2025-07-29T18:31:56.954Z
Status : Deferred
Published: 2025-07-29T17:15:33.127
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-31965
No data.
OpenCVE Enrichment
Updated: 2025-07-30T11:10:23Z
EUVD