Hardcoded External Resource Vulnerability in HCL BigFix Quantum Risk Analyzer
CVE-2026-21810

4.4MEDIUM

Key Information:

Vendor
CVE Published:
26 August 2026

What is CVE-2026-21810?

HCL BigFix Quantum Risk Analyzer is compromised due to a vulnerability characterized by hardcoded external resource references. This flaw allows attackers potential access to sensitive information and an opportunity to alter the binary, which may lead to exploitation or manipulation of the software. Maintaining the integrity of binaries and avoiding hardcoded references are critical for security in software development. For detailed guidance, visit the official HCL support page.

Affected Version(s)

BigFix Quantum Risk Analyzer 2.0.1.47

References

CVSS V3.1

Score:
4.4
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.