HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Read-Only. An improperly configured root file system may allow unintended modifications to critical system components, potentially increasing the risk of system compromise or unauthorized changes.
History

Mon, 11 May 2026 15:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:hcltech:bigfix_service_management:23.0:*:*:*:*:*:*:*

Thu, 07 May 2026 18:30:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech bigfix Service Management
Vendors & Products Hcltech
Hcltech bigfix Service Management

Wed, 06 May 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 06 May 2026 18:30:00 +0000

Type Values Removed Values Added
Description HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Read-Only. An improperly configured root file system may allow unintended modifications to critical system components, potentially increasing the risk of system compromise or unauthorized changes.
Title HCL BigFix Service Management (SM) is susceptible to a Root File System Not Mounted as Read-Only
Weaknesses CWE-1188
References
Metrics cvssV3_1

{'score': 3.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published: 2026-05-06T18:01:39.794Z

Updated: 2026-05-06T18:32:13.506Z

Reserved: 2025-04-01T18:46:26.620Z

Link: CVE-2025-31974

cve-icon Vulnrichment

Updated: 2026-05-06T18:32:08.727Z

cve-icon NVD

Status : Analyzed

Published: 2026-05-06T19:16:35.593

Modified: 2026-05-11T13:51:22.940

Link: CVE-2025-31974

cve-icon Redhat

No data.