CVE-2025-31959
EUVD-2025-20968806.05.2026, 15:16
HCL BigFix Service Management (SM) application fails to strip EXIF metadata from uploaded images. This could lead to confidentiality and privacy risks if sensitive location information is unintentionally shared. .Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hcltech | bigfix_service_management | 23.0 |
𝑥
= Vulnerable software versions
Vulnerability Media Exposure