PT-2026-29651 · Hcl · Hcl Bigfix Platform

Michele Spagnuolo

·

Published

2026-04-01

·

Updated

2026-04-02

·

CVE-2026-21765

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HCL BigFix Platform (affected versions not specified)
Description The HCL BigFix Platform is susceptible to a security issue involving insecure permissions on private cryptographic keys. Specifically, these keys, located on Windows host machines, may have overly permissive file system permissions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

CVE-2026-21765

Affected Products

Hcl Bigfix Platform