OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-67171

MEDIUM · CVSS 5.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-10-01 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

HCL BigFix Service Management is vulnerable due to an exposed API endpoint that discloses sensitive internal database information, potentially allowing attackers to conduct targeted database attacks. Organizations utilizing this service should prioritize remediation efforts to mitigate the risk of data exposure and subsequent exploitation. This vulnerability is particularly relevant for security teams and database administrators managing sensitive information within their environments.

CVE
CVE-2026-67171
Severity
MEDIUM
CVSS
5.3
EPSS
0.24%

Original NVD Description

HCL BigFix Service Management is affected by an Information Disclosure vulnerability because an exposed API endpoint exposes sensitive internal database information. This information could enable an attacker to facilitate targeted database attacks.

Related CVEs

Other vulnerabilities affecting the same vendor(s)