CVE-2025-31964 - HCL BigFix Privilege Escalation Remote Service Binding Vulnerability
CVE ID : CVE-2025-31964
Published : Jan. 7, 2026, 8:21 a.m. | 2 hours, 36 minutes ago
Description : Improper service binding configuration in internal service components in HCL BigFix IVR version 4.2 allows a privileged attacker to impact service availability via exposure of administrative services bound to external network interfaces instead of the local authentication interface.
Severity: 2.2 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Jan. 7, 2026, 8:21 a.m. | 2 hours, 36 minutes ago
Description : Improper service binding configuration in internal service components in HCL BigFix IVR version 4.2 allows a privileged attacker to impact service availability via exposure of administrative services bound to external network interfaces instead of the local authentication interface.
Severity: 2.2 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...