Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-84331
HistoryJul 30, 2023 - 12:00 a.m.

HCL Technologies BigFix Mobile Command Injection Vulnerability

2023-07-3000:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
hcl technologies
bigfix mobile
mobile device management
command injection
vulnerability
shell commands
webui server
security

7.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.0%

HCL Technologies BigFix Mobile is a Mobile Device Management (MDM) solution from HCL Technologies. It is designed to help businesses and organizations effectively manage and secure mobile devices, including smartphones, tablets and other mobile devices. HCL Technologies BigFix Mobile suffers from a command injection vulnerability that stems from the application failing to properly filter construct command special characters, commands, etc. An attacker can exploit the vulnerability to run arbitrary shell commands on the WebUI server.

CPENameOperatorVersion
hcl technologies bigfix mobile veq3.0

7.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.0%

Related for CNVD-2023-84331