CVE-2026-56592: Hcl Software Hcl Bigfix Service Management

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

HCL BigFix Service Management is affected by an Improper Authentication validation vulnerability related to inadequate account lockouts, which could allow an unauthenticated attacker to execute sustained brute-force attacks against the login interface, resulting in unauthorized system access.

Affected products

  • Hcl Software Hcl Bigfix Service Management: version v27 only

Published 2026-09-18. Last modified 2026-09-18.