CVE 5.3 MEDIUM

A cryptographic weakness has been identified in the HCL BigFix Service Management (SM)_CVE-2025-31977

5.3 / 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

Description

HCL BigFix SM is affected by cryptographic weakness due to weak or outdated encryption algorithms.  An attacker with network access could exploit this weakness to decrypt or manipulate encrypted communications under certain conditions.

Basic Information

ID CVE-2025-31977
Source HCL
Published Aug 28, 2025 at 17:00
Modified Aug 28, 2025 at 17:14

Affected Product

Vendor HCL Software
Product BigFix Service Management (SM)
Version 23
Affected Versions HCL Software BigFix Service Management (SM) 23

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.