← Back to CVE search

CVE-2025-31981

HCL BigFix

Description

HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption due to port 80 (HTTP) being open, allowing unencrypted access. An attacker with access to the network traffic can sniff packets from the connection and uncover the data.

CVSS 5.3EPSS 0.087%Risk 0.53
View source
Published
2026-04-21 15:16:35
Affected versions
unknown
Type
Core software
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N