CVE-2026-67103

HIGH Status: Received

CVSS Scores

CVSS v3.x Base Score
7.6
HIGH

Description

HCL BigFix Service Management is affected by Cross-Site Scripting (XSS) vulnerability, which could allow an attacker to inject unsanitized malicious scripts that execute in a victim's browser, enabling session hijacking, account takeover, and unauthorized actions on behalf of affected users.

Published
September 18, 2026 8:17 AM
Last Modified
September 18, 2026 8:17 AM
Source
[email protected]

Weaknesses (CWE)

CWE-79

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.