{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3ovmwareesxi8.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:vmware:fusion:*:*:*:*:*:*:*:*","cpe:2.3:a:vmware:workstation:*:*:*:*:*:*:*:*","cpe:2.3:o:vmware:esxi:7.0:*:*:*:*:*:*:*","cpe:2.3:o:vmware:esxi:7.0.0:b:*:*:*:*:*:*","cpe:2.3:o:vmware:esxi:8.0:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.1,"id":"CVE-2024-22248"},{"cvss":7.8,"id":"CVE-2024-22250"},{"cvss":5.9,"id":"CVE-2024-22251"},{"cvss":9.3,"id":"CVE-2024-22252"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["BigFix"],"_cs_severities":["medium"],"_cs_tags":["vulnerability","web-application","hcl-bigfix"],"_cs_type":"advisory","_cs_vendors":["HCL"],"content_html":"\u003cp\u003eHCL has disclosed multiple vulnerabilities affecting HCL BigFix. These security flaws allow unauthenticated or authenticated attackers to perform unauthorized actions, including the disclosure of sensitive system information, the manipulation of data within the BigFix environment, and the execution of Cross-Site Scripting (XSS) attacks. The affected CVEs are CVE-2024-22248, CVE-2024-22249, CVE-2024-22250, CVE-2024-22251, and CVE-2024-22252. These vulnerabilities could lead to significant compromise of the management infrastructure, as BigFix typically operates with high-level administrative privileges across endpoints. Defenders should review HCL security bulletins to identify the specific patch versions associated with these identifiers and prioritize the remediation of management consoles exposed to internal or external networks.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe identified vulnerabilities pose a risk to the integrity and confidentiality of the entire HCL BigFix deployment. If exploited, an attacker could potentially gain unauthorized access to managed assets, exfiltrate sensitive endpoint information, or inject malicious scripts into the BigFix web console to target administrative users.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReview the official HCL BigFix security advisories to determine the affected versions and the corresponding patches for your specific deployment.\u003c/li\u003e\n\u003cli\u003eUpdate all HCL BigFix components to the latest patched versions as recommended by the vendor.\u003c/li\u003e\n\u003cli\u003eRestrict network access to the HCL BigFix Web Console and management interfaces to trusted administrative subnets only.\u003c/li\u003e\n\u003cli\u003eMonitor web server logs for suspicious activity involving unusual parameters or attempts to inject script-based payloads into the application interface.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-10-02T14:21:04Z","date_published":"2026-10-02T14:21:04Z","id":"https://feed.craftedsignal.io/briefs/2026-10-hcl-bigfix-vulns/","summary":"HCL BigFix is affected by multiple security vulnerabilities (CVE-2024-22248, CVE-2024-22249, CVE-2024-22250, CVE-2024-22251, CVE-2024-22252) that could allow a remote attacker to conduct cross-site scripting (XSS), disclose sensitive information, or manipulate data.","title":"Multiple Vulnerabilities in HCL BigFix","url":"https://feed.craftedsignal.io/briefs/2026-10-hcl-bigfix-vulns/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:o:vmware:esxi:8.0:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}