HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption due to port 80 (HTTP) being open, allowing unencrypted access.  An attacker with access to the network traffic can sniff packets from the connection and uncover the data.
History

Tue, 21 Apr 2026 15:00:00 +0000

Type Values Removed Values Added
Description HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption due to port 80 (HTTP) being open, allowing unencrypted access.  An attacker with access to the network traffic can sniff packets from the connection and uncover the data.
Title HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption
Weaknesses CWE-319
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2026-04-21T14:28:24.452Z

Reserved: 2025-04-01T18:46:33.655Z

Link: CVE-2025-31981

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-04-21T15:16:35.580

Modified: 2026-04-21T16:20:24.180

Link: CVE-2025-31981

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.