PT-2025-51915 · Hcl · Hcl Bigfix Remote Control Lite Web Portal
Published
2025-12-17
·
Updated
2025-12-21
·
CVE-2025-55254
CVSS v3.1
4.8
Medium
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
HCL BigFix Remote Control Lite Web Portal versions 10.1.0.0326 and lower
Description
A flaw exists in the way the software handles path-relative stylesheet imports. This could allow for the execution of malicious code within specific web pages.
Recommendations
Update to a version of HCL BigFix Remote Control Lite Web Portal higher than 10.1.0.0326.
Fix
Open Redirect
Insufficient Session Expiration
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hcl Bigfix Remote Control Lite Web Portal