OCTOBER 5, 2026
Live Feed
Back to database
Case File

CVE-2026-67106

MEDIUM · CVSS 5.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-05

CyberRota Analysis

AI-Generated

HCL BigFix Service Management has an information disclosure vulnerability due to two exposed API endpoints that return sensitive data. This could allow attackers to gather critical information, potentially facilitating more severe attacks. Organizations using HCL BigFix should prioritize remediation to mitigate the risk of further exploitation.

CVE
CVE-2026-67106
Severity
MEDIUM
CVSS
5.3
EPSS
0.24%

Original NVD Description

HCL BigFix Service Management is affected by an Information Disclosure vulnerability because two exposed API endpoints return sensitive data. This information could enable an attacker to launch further, more serious attacks.

Related CVEs

Other vulnerabilities affecting the same vendor(s)