CVE-2025-31982: HCL BigFix Service Management (SM) had directories that were not linked or publicly visible but could be accessed directl
HCL BigFix Service Management (SM) had directories that were not linked or publicly visible but could be accessed directly. This could allow an increased risk of information disclosure or misuse of sensitive functionality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-31982?
The severity of CVE-2025-31982 is currently under evaluation based on the potential information exposure risk.
How do I fix CVE-2025-31982?
To fix CVE-2025-31982, ensure that access permissions are properly configured for directories in HCL BigFix Service Management.
What type of vulnerability is CVE-2025-31982?
CVE-2025-31982 is an information exposure vulnerability allowing unauthorized access to non-public directories.
Which version of HCL BigFix Service Management is affected by CVE-2025-31982?
CVE-2025-31982 impacts HCL BigFix Service Management, although specific version details are not disclosed.
What can happen if CVE-2025-31982 is exploited?
If CVE-2025-31982 is exploited, there is a risk of unauthorized information access that could lead to data breaches.