HCL BigFix Mobile
cpe:2.3:a:hcltech:bigfix_mobile:*:*:*:*:*:*:*
- <= 3.3
A vulnerability exists in HCL BigFix Mobile versions through 3.3, related to insecure directives within the Content Security Policy (CSP). This flaw could allow an attacker to manipulate users into performing unintended actions by inadequately controlling the sources of scripts and other content.
Exploitation of this vulnerability could lead to unauthorized actions being performed by users, potentially allowing for further exploitation or manipulation within the application.
Users are advised to upgrade to HCL BigFix Mobile version 3.4 or higher.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.