HCL BigFix Mobile 3.3 and earlier is affected by improper access control. Unauthorized users can access a small subset of endpoint actions, potentially allowing access to select internal functions.
2025-10-16T06:15:35.373
2025-10-21T18:17:18.780
Analyzed
CVSSv3.1: 5.3 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | hcltech | bigfix_mobile | ≤ 3.3 | Yes |
| Application | hcltech | bigfix_modern_client_management | < 3.4 | Yes |