HCL BigFix Compliance Vulnerability: Unvalidated Redirects and Forwards Put Users at Risk
CVE-2024-30140
5.4MEDIUM
What is CVE-2024-30140?
HCL BigFix Compliance is affected by unvalidated redirects and forwards. The HOST header can be manipulated by an attacker and as a result, it can poison the web cache and provide back to users being served the page.
Affected Version(s)
BigFix Compliance 2.0.11