Description

The BigFix SaaS's HTTP responses were missing some security headers. The absence of these headers weakens the application's client-side security posture, making it more vulnerable to common web attacks that these headers are designed to mitigate, such as Cross-Site Scripting (XSS), Clickjacking, and protocol downgrade attacks.

INFO

Published Date :

2025-12-02T17:59:05.614Z

Last Modified :

2025-12-08T20:05:30.168Z

Source :

HCL
AFFECTED PRODUCTS

The following products are affected by CVE-2025-52622 vulnerability.

Vendors Products
Hcltech
  • Bigfix Saas
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-52622.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact