ZeroHour

CVE-2022-42453

CVSS 3.1
6.5 medium
EPSS
<1%p19
Published
()
Modified
Description

There are insufficient warnings when a Fixlet is imported by a user. The warning message currently assumes the owner of the script is the logged in user, with insufficient warnings when attempting to run the script.

Vendors
hcltech
Products
bigfix platform
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.