High severity7.5NVD Advisory· Published Mar 4, 2022· Updated Jun 17, 2026
CVE-2021-27756
CVE-2021-27756
Description
"TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled then an attacker can passively record traffic and later decrypt it."
Affected products
2- BigFix Compliance/BigFix Compliancedescription
- Range: <=2.0.5
Patches
Vulnerability mechanics
References
1- support.hcltechsw.com/csmnvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.