CVE-2026-67106EPSS p13.7%

CVE-2026-67106CVE-2026-67106

hcltech / bigfix_service_management

Description

HCL BigFix Service Management is affected by an Information Disclosure vulnerability because two exposed API endpoints return sensitive data. This information could enable an attacker to launch further, more serious attacks.

Scoring

CVSS 5.3 ()
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS0.24% probability of exploitation · percentile 13.7% · 2026-10-05T12:00:23Z
Last modified2026-10-05
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.