First published: Thu Jan 19 2023(Updated: )
HCL BigFix Mobile / Modern Client Management Admin and Config UI passwords can be brute-forced. User should be locked out for multiple invalid attempts.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Mobile | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-27782.
The title of the vulnerability is HCL BigFix Mobile / Modern Client Management Admin and Config UI passwords can be brute-forced. User should be locked out for multiple invalid attempts.
CVE-2021-27782 has a severity level of high (7.5).
HCL BigFix Mobile version 2.0 is affected by CVE-2021-27782.
To mitigate the vulnerability, HCL BigFix Mobile users should lock the user out for multiple invalid attempts.