Filtered by vendor Hcltech Subscriptions
Filtered by product Bigfix Modern Client Management Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-28025 1 Hcltech 1 Bigfix Modern Client Management 2024-11-21 6.6 Medium
Due to this vulnerability, the Master operator could potentially incorporate an SVG tag into HTML, leading to an alert pop-up displaying a cookie. To mitigate stored XSS vulnerabilities, a preventive measure involves thoroughly sanitizing and validating all user inputs before they are processed and stored in the server storage.
CVE-2021-27783 1 Hcltech 2 Bigfix Mobile, Bigfix Modern Client Management 2024-11-21 6.8 Medium
User generated PPKG file for Bulk Enroll may have unencrypted sensitive information exposed.