CNNVD-202512-201 Information

CNNVD ID

CNNVD-202512-201

CVE-2025-52622

  • CNNVD Published: 2025-12-02

Description (Chinese)

HCL BigFix SaaS是印度HCL公司的一个终端管理平台。 HCL BigFix SaaS存在安全漏洞,该漏洞源于缺少安全标头,可能导致跨站脚本和点击劫持攻击。

Description (English)

HCL BigFix SaaS is an end-management platform for HCL India. HCL BigFix SaaS has a security loophole, which stems from the lack of security markers, which may lead to cross-site scripts and hijacking attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HCL

Published

2025-12-02

Last Modified

2026-02-24

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0127171

Patch

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0127171

Share on: