HCL BigFix Remote Control Lite Web Portal Content Security Policy Vulnerability Allowing Code Execution

Vulnerability

A vulnerability exists in HCL BigFix Remote Control Lite Web Portal in versions through 10.1.0.0326, due to improper management of Content Security Policy. This vulnerability may allow the execution of malicious code within web pages.

Impact

Exploitation of this vulnerability could lead to the execution of malicious code in the context of the user viewing the affected web page.

Added: Dec 17, 2025, 9:21 PM
Updated: Dec 17, 2025, 9:21 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
1.3
exploitability
6.0
remediation
7.7
relevance
1.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.