CVE-2025-31977: Hcltech Bigfix Service Management
Medium severity, CVSS 6.5. EPSS: 0.1% chance of exploitation in the next 30 days.
HCL BigFix SM is affected by cryptographic weakness due to weak or outdated encryption algorithms. An attacker with network access could exploit this weakness to decrypt or manipulate encrypted communications under certain conditions.
Affected products
- Hcltech Bigfix Service Management: version 23.0 only
Published 2025-08-28. Last modified 2026-09-26.