HCL BigFix Compliance is vulnerable to the generation of error messages containing sensitive information. Detailed error messages can provide enticement information or expose information about its environment, users, or associated data.
References
Link | Resource |
---|---|
https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0117197 | Vendor Advisory |
Configurations
History
17 Jun 2025, 21:03
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:hcltech:bigfix_compliance:2.0.11:*:*:*:*:*:*:* | |
References | () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0117197 - Vendor Advisory | |
First Time |
Hcltech
Hcltech bigfix Compliance |
08 Nov 2024, 19:01
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
07 Nov 2024, 09:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-07 09:15
Updated : 2025-06-17 21:03
NVD link : CVE-2024-30141
Mitre link : CVE-2024-30141
CVE.ORG link : CVE-2024-30141
JSON object : View
Products Affected
hcltech
- bigfix_compliance
CWE
CWE-209
Generation of Error Message Containing Sensitive Information