← Voltar para CVEs
CVE-2025-31959
LOW3.5
Descricao
HCL BigFix Service Management (SM) application fails to strip EXIF metadata from uploaded images. This could lead to confidentiality and privacy risks if sensitive location information is unintentionally shared. .
Detalhes CVE
Pontuacao CVSS v3.13.5
SeveridadeLOW
Vetor CVSSCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Vetor de ataqueNETWORK
ComplexidadeLOW
Privilegios necessariosLOW
Interacao do usuarioREQUIRED
Publicado5/6/2026
Ultima modificacao5/7/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
hcltech:bigfix_service_management
Fraquezas (CWE)
CWE-1230
Referencias
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.