CVE-2023-45705: HCL BigFix Platform is susceptible to Server Side Request Forgery (SSRF)
An administrative user of WebReports may perform a Server Side Request Forgery (SSRF) exploit through SMTP configuration options.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45705?
CVE-2023-45705 has been classified with a high severity level due to its potential for Server Side Request Forgery (SSRF).
How do I fix CVE-2023-45705?
To mitigate CVE-2023-45705, it is recommended to update the HCL BigFix Platform to the latest version that addresses the vulnerability.
Which versions of HCL BigFix Platform are affected by CVE-2023-45705?
CVE-2023-45705 affects HCL BigFix Platform versions from 10.0.0 to 10.0.11 and versions from 11.0.0 to 11.0.2.
What type of vulnerability is CVE-2023-45705?
CVE-2023-45705 is classified as a Server Side Request Forgery (SSRF) vulnerability that can be exploited through SMTP configuration options.
Who should be concerned about CVE-2023-45705?
Administrators and users of the HCL BigFix Platform should be concerned about CVE-2023-45705 due to its potential implications for system security.