First published: Fri May 06 2022(Updated: )
The BigFix Console installer is created with InstallShield, which was affected by CVE-2021-41526, a vulnerability that could allow a local user to perform a privilege escalation. This vulnerability was resolved by updating to an InstallShield version with the underlying vulnerability fixed.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Platform | >=9.5<=9.5.18 | |
Hcltech Bigfix Platform | >=10<=10.0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-27767 is a vulnerability that affects the BigFix Console installer created with InstallShield, allowing a local user to perform privilege escalation.
The severity of CVE-2021-27767 is high with a CVSS score of 7.8.
CVE-2021-27767 affects the BigFix Console installer by allowing a local user to perform privilege escalation.
To fix CVE-2021-27767, it is recommended to update to an InstallShield version with the underlying vulnerability fixed.
More information about CVE-2021-27767 can be found at the following references: [1] [2].