CNNVD-202510-1396 Information

CNNVD ID

CNNVD-202510-1396

CVE-2025-52647

  • CNNVD Published: 2025-10-10

Description (Chinese)

HCL BigFix WebUI是印度HCL公司的一个基于网页的管理页面。 HCL BigFix WebUI存在安全漏洞,该漏洞源于HTTP标头字段中的HOST信息响应不当,可能导致主机头投毒攻击。

Description (English)

HCL BigFix WebUI is a web-based management page of HCL India. HCL BigFix WebUI has a security loophole, which stems from the inappropriate response to HOTTTP header information, which could lead to a host header poisoning attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HCL

Published

2025-10-10

Last Modified

2026-02-24

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124562

Patch

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124562

Share on: