CVE-2025-31959EPSS p3.1%
CVE-2025-31959CVE-2025-31959
hcltech / bigfix_service_management
Description
HCL BigFix Service Management (SM) application fails to strip EXIF metadata from uploaded images. This could lead to confidentiality and privacy risks if sensitive location information is unintentionally shared. .
Scoring
| CVSS | 3.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N |
| EPSS | 0.14% probability of exploitation · percentile 3.1% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-30 |