First published: Wed Oct 11 2023(Updated: )
BigFix Insights/IVR fixlet uses improper credential handling within certain fixlet content. An attacker can gain access to information that is not explicitly authorized.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Bigfix Insights For Vulnerability Remediation | <2.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44758 is a vulnerability in BigFix Insights/IVR that allows an attacker to gain unauthorized access to information.
CVE-2022-44758 affects Hcltech Bigfix Insights For Vulnerability Remediation version up to exclusive 2.0.3.
CVE-2022-44758 has a severity level of 6.5 (Medium).
An attacker can exploit CVE-2022-44758 by using improper credential handling within certain fixlet content in BigFix Insights/IVR.
Please refer to the following link for information on fixing CVE-2022-44758: [https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0108005]