First published: Wed Oct 11 2023(Updated: )
BigFix Insights for Vulnerability Remediation (IVR) uses weak cryptography that can lead to credential exposure. An attacker could gain access to sensitive information, modify data in unexpected ways, etc.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Insights For Vulnerability Remediation | <2.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44757 is a vulnerability in BigFix Insights for Vulnerability Remediation that uses weak cryptography and can lead to credential exposure.
CVE-2022-44757 has a severity rating of 8.2, which is considered high.
CVE-2022-44757 can allow an attacker to gain access to sensitive information, modify data, and perform other unauthorized actions in BigFix Insights for Vulnerability Remediation.
CVE-2022-44757 affects BigFix Insights for Vulnerability Remediation version 2.0.3 (up to exclusive).
To fix CVE-2022-44757, it is recommended to update BigFix Insights for Vulnerability Remediation to a version that addresses the weak cryptography vulnerability.