Description
An attacker could potentially intercept credentials via the task manager and perform unauthorized access to the Client Deploy Tool on Windows systems.
CVSS breakdown
CVSS 3.1
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected products
- HCL Software / BigFix Platform9.5 - 9.5.24, 10 - 10.0.11, 11.0.1 – 9.5 - 9.5.24, 10 - 10.0.11, 11.0.1