CVE-2026-21810
4.4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Summary
HCL BigFix Quantum Risk Analyzer is affected by a hardcoded external resource reference and a lack of binary integrity which could allow an attacker to obtain sensitive information or modify the binary.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| HCLSoftware | BigFix Quantum Risk Analyzer | 2.0.1.47 | affected |
Weaknesses
- CWE-494: CWE-494 Download of code without integrity check
- CWE-610: CWE-610 Externally Controlled Reference to a Resource in Another Sphere
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.