Vulnerability in HCL BigFix Service Management due to Insecure WSGI Server
CVE-2025-52613

4.6MEDIUM

Key Information:

Vendor
CVE Published:
6 May 2026

What is CVE-2025-52613?

HCL BigFix Service Management is susceptible to security risks due to the deployment of an outdated or misconfigured WSGI server. This vulnerability could allow unauthorized access and exploitation, making it critical for users to update their server configurations to enhance protection against potential threats and ensure data integrity.

Affected Version(s)

BigFix Service Management (SM) 23

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.