CVE-2025-0277 - CVE House
Back to Database
Status published Medium CVE-2025-0277

HCL BigFix Mobile is affected by an insecure Content Security Policy (CSP)

Vulnerability Description

HCL BigFix Mobile 3.3 and earlier are vulnerable to certain insecure directives within the Content Security Policy (CSP). An attacker could trick users into performing actions by not properly restricting the sources of scripts and other content.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-0277

Credits & Attribution

No credits recorded in the NVD database.