CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 2.9. See the original NVD description below for full technical details.
CVE
CVE-2025-31963
Severity
LOW
CVSS
2.9
EPSS
0.08%
Original NVD Description
Improper authentication and missing CSRF protection in the local setup interface component in HCL BigFix IVR version 4.2 allows a local attacker to perform unauthorized configuration changes via unauthenticated administrative configuration requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)