CVE-2025-31977EPSS p0.9%

CVE-2025-31977CVE-2025-31977

hcltech / bigfix_service_management

Description

HCL BigFix SM is affected by cryptographic weakness due to weak or outdated encryption algorithms.  An attacker with network access could exploit this weakness to decrypt or manipulate encrypted communications under certain conditions.

Scoring

CVSS 5.3 ()
VectorCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS0.10% probability of exploitation · percentile 0.9% · 2026-10-04T12:00:21Z
Last modified2026-09-26
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.