Project Subscriptions
| Vendors | Products |
|---|---|
|
Hcltech
Subscribe
|
Bigfix Webui
Subscribe
Bigfix Webui Api
Subscribe
Bigfix Webui Application Administration
Subscribe
Bigfix Webui Cmep
Subscribe
Bigfix Webui Common
Subscribe
Bigfix Webui Content App
Subscribe
Bigfix Webui Custom
Subscribe
Bigfix Webui Data Sync
Subscribe
Bigfix Webui Extensions
Subscribe
Bigfix Webui Framework
Subscribe
Bigfix Webui Insights
Subscribe
Bigfix Webui Ivr
Subscribe
Bigfix Webui Mdm
Subscribe
Bigfix Webui Patch
Subscribe
Bigfix Webui Patch Policies
Subscribe
Bigfix Webui Permissions And Preferences
Subscribe
Bigfix Webui Profile Management
Subscribe
Bigfix Webui Query
Subscribe
Bigfix Webui Reports
Subscribe
Bigfix Webui Scm
Subscribe
Bigfix Webui Software Distribution
Subscribe
Bigfix Webui Take Action
Subscribe
|
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 14 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech bigfix Webui Api
Hcltech bigfix Webui Application Administration Hcltech bigfix Webui Cmep Hcltech bigfix Webui Common Hcltech bigfix Webui Content App Hcltech bigfix Webui Custom Hcltech bigfix Webui Data Sync Hcltech bigfix Webui Extensions Hcltech bigfix Webui Framework Hcltech bigfix Webui Insights Hcltech bigfix Webui Ivr Hcltech bigfix Webui Mdm Hcltech bigfix Webui Patch Hcltech bigfix Webui Patch Policies Hcltech bigfix Webui Permissions And Preferences Hcltech bigfix Webui Profile Management Hcltech bigfix Webui Query Hcltech bigfix Webui Reports Hcltech bigfix Webui Scm Hcltech bigfix Webui Software Distribution Hcltech bigfix Webui Take Action |
|
| CPEs | cpe:2.3:a:hcltech:bigfix_webui_api:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_application_administration:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_cmep:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_common:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_content_app:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_custom:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_data_sync:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_extensions:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_framework:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_insights:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_ivr:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_mdm:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_patch:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_patch_policies:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_permissions_and_preferences:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_profile_management:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_query:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_reports:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_scm:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_software_distribution:*:*:*:*:*:*:*:* cpe:2.3:a:hcltech:bigfix_webui_take_action:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltech bigfix Webui Api
Hcltech bigfix Webui Application Administration Hcltech bigfix Webui Cmep Hcltech bigfix Webui Common Hcltech bigfix Webui Content App Hcltech bigfix Webui Custom Hcltech bigfix Webui Data Sync Hcltech bigfix Webui Extensions Hcltech bigfix Webui Framework Hcltech bigfix Webui Insights Hcltech bigfix Webui Ivr Hcltech bigfix Webui Mdm Hcltech bigfix Webui Patch Hcltech bigfix Webui Patch Policies Hcltech bigfix Webui Permissions And Preferences Hcltech bigfix Webui Profile Management Hcltech bigfix Webui Query Hcltech bigfix Webui Reports Hcltech bigfix Webui Scm Hcltech bigfix Webui Software Distribution Hcltech bigfix Webui Take Action |
|
| Metrics |
cvssV3_1
|
Mon, 11 May 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 10 May 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech bigfix Webui |
|
| Vendors & Products |
Hcltech
Hcltech bigfix Webui |
Sat, 09 May 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper authorization vulnerability in HCL BigFix WebUI allows an authenticated user without Master Operator privileges to access internal data (site names, versions, and configuration variables) and bypass privilege requirements via unprotected endpoints lacking adequate security headers. | |
| Title | HCL BigFix WebUI is affected by an improper authorization vulnerability | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-05-11T17:30:11.814Z
Reserved: 2026-04-14T05:56:25.354Z
Link: CVE-2025-15633
Updated: 2026-05-11T17:30:01.186Z
Status : Analyzed
Published: 2026-05-09T06:16:07.413
Modified: 2026-05-14T20:28:21.457
Link: CVE-2025-15633
No data.
OpenCVE Enrichment
Updated: 2026-05-10T20:00:05Z