Insufficiently Protected Credentials in HCL BigFix Service Management
CVE-2025-31976
4.8MEDIUM
What is CVE-2025-31976?
HCL BigFix Service Management is affected by a vulnerability that allows for insufficiently protected credentials during communication with a backend application. This transient exposure could put those credentials at risk of exfiltration and misuse by an attacker, highlighting the need for robust credential protection mechanisms to safeguard against potential security incidents.
Affected Version(s)
BigFix Service Management (SM) 23
