SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-21808

MEDIUM · CVSS 4.1 EPSS 0.10%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

HCL BigFix Quantum Risk Analyzer is vulnerable due to its default configuration, which generates extensive logging information that may inadvertently expose sensitive data. This logging can lead to potential data leakage and provide attackers with insights into internal application logic and architecture. Organizations using this product should prioritize addressing this vulnerability to mitigate risks associated with data exposure and potential exploitation.

CVE
CVE-2026-21808
Severity
MEDIUM
CVSS
4.1
EPSS
0.10%

Original NVD Description

HCL BigFix Quantum Risk Analyzer generates highly detailed logging information by default which increases the risk of sensitive data leakage and can provide an attacker with internal application logic and architectural details.