Beveiligingsadvies

CVE-2023-37525

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-01-28 19:58:49
Laatst bijgewerkt 2026-01-29 18:11:32
Toegewezen door HCL
CVSS-score 5.3
Status PUBLISHED

Beschrijving

A sensitive information disclosure in HCL BigFix Compliance allows a remote attacker to access files under the WEB-INF directory, which may contain Java class files and configuration information, leading to unauthorized access to application internals.