CVE-2024-23554
EUVD-2024-2104918.05.2024, 00:15
Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (RCE).
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltech | bigfix_platform | 9.5 ≤ 𝑥 < 9.5.25 |
| hcltech | bigfix_platform | 10 ≤ 𝑥 < 10.0.12 |
| hcltech | bigfix_platform | 11.0.1 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| hcltech | bigfix_platform | 9.5 ≤ 𝑥 ≤ 9.5.24 | ADP |
| hcltech | bigfix_platform | 10.0.0 ≤ 𝑥 ≤ 10.0.11 | ADP |
Common Weakness Enumeration