CVE-2024-30117

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
14/10/2024
Last modified:
17/10/2024

Description

A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:* 9.5 (including) 9.5.25 (excluding)
cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:* 10.0.0 (including) 10.0.12 (excluding)
cpe:2.3:a:hcltech:bigfix_platform:*:*:*:*:*:*:*:* 11.0.0 (including) 11.0.3 (excluding)