TROYANOSYVIRUS
Retour aux CVEs

CVE-2025-31959

LOW
3.5

Description

HCL BigFix Service Management (SM) application fails to strip EXIF metadata from uploaded images. This could lead to confidentiality and privacy risks if sensitive location information is unintentionally shared. .

Details CVE

Score CVSS v3.13.5
SeveriteLOW
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisLOW
Interaction utilisateurREQUIRED
Publie5/6/2026
Derniere modification5/7/2026
Sourcenvd
Observations honeypot0

Produits affectes

hcltech:bigfix_service_management

Faiblesses (CWE)

CWE-1230

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.