Medium severity5.4NVD Advisory· Published Nov 7, 2024· Updated Jun 17, 2026
CVE-2024-30140
CVE-2024-30140
Description
HCL BigFix Compliance is affected by unvalidated redirects and forwards. The HOST header can be manipulated by an attacker and as a result, it can poison the web cache and provide back to users being served the page.
Affected products
3- cpe:2.3:a:hcltech:bigfix_compliance:2.0.11:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 2.0.11
Patches
Vulnerability mechanics
References
1- support.hcl-software.com/csmnvdVendor Advisory
News mentions
0No linked articles in our index yet.