CVE-2026-21810

Summary

HCL BigFix Quantum Risk Analyzer is affected by a hardcoded external resource reference and a lack of binary integrity which could allow an attacker to obtain sensitive information or modify the binary.

Affected Software

VendorProductVersion RangeStatus
HCLSoftwareBigFix Quantum Risk Analyzer2.0.1.47affected

Weaknesses

  • CWE-494: CWE-494 Download of code without integrity check
  • CWE-610: CWE-610 Externally Controlled Reference to a Resource in Another Sphere

References