PT-2025-42404 · Hcl · Hcl Bigfix Mobile / Modern Client Management

Published

2025-10-16

·

Updated

2025-10-21

·

CVE-2025-0274

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions HCL BigFix Modern Client Management versions 3.3 and earlier
Description The software contains an improper access control issue. This allows unauthorized users to access a limited set of endpoint actions and potentially internal functions.
Recommendations Update to a version later than 3.3.

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-0274

Affected Products

Hcl Bigfix Mobile / Modern Client Management