CVE-2023-45705: Hcltech Bigfix Platform
High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.
An administrative user of WebReports may perform a Server Side Request Forgery (SSRF) exploit through SMTP configuration options.
Affected products
- Hcltech Bigfix Platform: from 10, before 10.0.11 (fixed in 10.0.11); from 11.0.0, before 11.0.2 (fixed in 11.0.2)
Published 2024-03-28. Last modified 2026-06-17.