Information Disclosure in HCL BigFix Service Management
CVE-2026-67104
5.3MEDIUM
What is CVE-2026-67104?
HCL BigFix Service Management contains an information disclosure vulnerability that can be exploited by unauthenticated attackers. By analyzing publicly accessible JavaScript files, an attacker may uncover hidden administrative API endpoints. This exposure allows for potential targeted exploitation, compromising the integrity of the system's security posture.
Affected Version(s)
HCL BigFix Service Management Version 27
