CVE-2025-59849 - HCL BigFix Remote Control is vulnerable to an insecure CSP configuration

CVE-2025-59849 - HCL BigFix Remote Control is vulnerable to an insecure CSP configuration

CVE ID : CVE-2025-59849 Published : Dec. 17, 2025, 8:28 p.m. | 24 minutes ago Description : Improper management of Content Security Policy in HCL BigFix Remote Control Lite Web Portal (versions 10.1.0.0326 and lower) may allow the execution of malicious code in web pages. Severity: 4.7 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Dec. 17, 2025

Source: Telegram CVE Monitor