CVE-2025-31981EPSS p0.3%
CVE-2025-31981CVE-2025-31981
hcltech / bigfix_service_management
Description
HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption due to port 80 (HTTP) being open, allowing unencrypted access. An attacker with access to the network traffic can sniff packets from the connection and uncover the data.
Scoring
| CVSS | 5.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 0.09% probability of exploitation · percentile 0.3% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-30 |