← Back to CVE List
CVE-2026-56590NVD
Vulnerability Summary
HCL BigFix Service Management is affected by an Unrestricted File Upload vulnerability due to improper file validation controls, which could allow an unauthenticated attacker to upload and execute malicious payloads, resulting in a complete server compromise.
CVSS v3.1 Base Metrics — Score 6.4 (MEDIUM)
Attack VectorNetwork
Attack ComplexityHigh
Privileges RequiredLow
User InteractionRequired
ScopeUnchanged
ConfidentialityHigh
IntegrityHigh
AvailabilityNone
Affected & Patched Versions
- HCL Software HCL BigFix Service Management >= v27
Not provided by cveorg for this CVE.