First published: Tue Apr 15 2025(Updated: )
HCL BigFix Web Reports might be subject to a Denial of Service (DoS) attack, due to a potentially weak validation of an API parameter.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL BigFix Web Reports |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-42189 has been classified as a high severity vulnerability due to the potential for Denial of Service attacks.
To mitigate CVE-2024-42189, ensure that you apply the latest patches and updates from HCL Software for BigFix Web Reports.
The potential impact of CVE-2024-42189 is a Denial of Service that could disrupt services provided by HCL BigFix Web Reports.
Yes, CVE-2024-42189 can be easily exploited if the API parameter validation is weak, allowing attackers to initiate a DoS attack.
All installations of HCL BigFix Web Reports that do not have the latest security updates may be affected by CVE-2024-42189.