CVE-2024-42194
CVSS 3.1 Score 3.1 of 10 (low)
Details
Published Dec 17, 2024
CWE ID 280
Summary
CVE-2024-42194 is a vulnerability affecting HCL BigFix Inventory. This issue arises from the application's handling of insufficient permissions or privileges. An attacker with read-only access can exploit this vulnerability by crafting a specific REST API call, potentially altering certain configuration parameters. This could lead to unintended changes within the system. Organizations using HCL BigFix Inventory are advised to address this issue promptly to prevent unauthorized modification of configuration settings.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share