Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4m7-q7pg-96vr

Опубликовано: 18 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.1

Описание

HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an attacker to craft a malicious web page that interacts with the vulnerable application, enabling unauthorized access to protected resources and restricted APIs on behalf of a victim.

HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an attacker to craft a malicious web page that interacts with the vulnerable application, enabling unauthorized access to protected resources and restricted APIs on behalf of a victim.

EPSS

Процентиль: 4%
0.00148
Низкий

3.1 Low

CVSS3

Дефекты

CWE-942

Связанные уязвимости

CVSS3: 3.1
nvd
4 дня назад

HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an attacker to craft a malicious web page that interacts with the vulnerable application, enabling unauthorized access to protected resources and restricted APIs on behalf of a victim.

EPSS

Процентиль: 4%
0.00148
Низкий

3.1 Low

CVSS3

Дефекты

CWE-942