CVE-2025-0276 - CVE House
Back to Database
Status published Medium CVE-2025-0276

HCL BigFix Modern Client Management (MCM) is affected by an insecure Content Security Policy (CSP)

Vulnerability Description

HCL BigFix Modern Client Management (MCM) 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP). An attacker could trick users into performing actions by not properly restricting the sources of scripts and other content.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-0276

Credits & Attribution

No credits recorded in the NVD database.