CVE-2026-56599
CVE-2026-56599 is a low-severity vulnerability in Hcltech Bigfix Service Management with a CVSS 3.x base score of 2.2. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-614.
Key facts
- Severity: Low (CVSS 3.x base score 2.2)
- EPSS exploit prediction: 0% (1st percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-614
- Affected product: Hcltech Bigfix Service Management
- Published:
- Last modified:
Description
HCL BigFix Service Management is affected by an Insecure Cookie Attribute Configuration vulnerability, which could allow an attacker to exploit missing security attributes such as SameSite, HttpOnly, Secure, and restrictive Paths, enabling Cross-Site Request Forgery (CSRF), session hijacking via Cross-Site Scripting (XSS), and unauthorized access.
Frequently asked questions
- What is CVE-2026-56599?
- HCL BigFix Service Management is affected by an Insecure Cookie Attribute Configuration vulnerability, which could allow an attacker to exploit missing security attributes such as SameSite, HttpOnly, Secure, and restrictive Paths, enabling Cross-Site Request Forgery (CSRF), session hijacking via Cross-Site Scripting (XSS), and unauthorized access.
- How severe is CVE-2026-56599?
- CVE-2026-56599 has a CVSS 3.x base score of 2.2, rated low severity. It is exploitable over local access with high attack complexity, requires low privileges and user interaction. Impact on confidentiality is low, integrity none, and availability none.
- Is CVE-2026-56599 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (1st percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2026-56599?
- CVE-2026-56599 affects Hcltech Bigfix Service Management. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2026-56599?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2026-56599 published?
- CVE-2026-56599 was published on 2026-10-01 and last updated on 2026-10-05.
References
Affected products (1)
- cpe:2.3:a:hcltech:bigfix_service_management:27:-:*:*:*:*:*:*
More vulnerabilities in Hcltech Bigfix Service Management
- CVE-2024-30151 — High (CVSS 8.3): HCL BigFix Service Management (SX) is affected by a Broken Access Control vulnerability leading to privilege…
- CVE-2026-67105 — High (CVSS 7.4): HCL BigFix Service Management is affected by an Insecure Communication vulnerability, which could allow an attacker…
- CVE-2026-56589 — High (CVSS 7.2): HCL BigFix Service Management is affected by a Stored Cross-Site Scripting (XSS) vulnerability, which could allow an…
- CVE-2025-31972 — Medium (CVSS 6.5): HCL BigFix SM is affected by a Sensitive Information Exposure vulnerability where internal connections do not use TLS…
- CVE-2026-67171 — Medium (CVSS 5.3): HCL BigFix Service Management is affected by an Information Disclosure vulnerability because an exposed API endpoint…
- CVE-2026-67106 — Medium (CVSS 5.3): HCL BigFix Service Management is affected by an Information Disclosure vulnerability because two exposed API endpoints…
All CVEs affecting Hcltech Bigfix Service Management →
Other CWE-614 vulnerabilities
- CVE-2025-8037 — Critical (CVSS 9.1): Setting a nameless cookie with an equals sign in the value shadowed other cookies. Even if the nameless cookie was set…
- CVE-2026-53661 — High (CVSS 8.8): Boruta is a standalone authorization server that aims to implement OAuth 2.0 and Openid Connect up to decentralized…
- CVE-2026-46398 — High (CVSS 8.8): HAX CMS helps manage microsite universe with PHP or NodeJs backends. Starting in version 25.0.0 and prior to version…
- CVE-2025-53757 — High (CVSS 8.7): This vulnerability exists in Digisol DG-GR6821AC Router due to misconfiguration of both Secure and HttpOnly flags on…
- CVE-2025-0479 — High (CVSS 8.6): This vulnerability exists in the CP Plus Router due to insecure handling of cookie flags used within its web interface.…
- CVE-2024-2493 — High (CVSS 7.5): Session Hijacking vulnerability in Hitachi Ops Center Analyzer.This issue affects Hitachi Ops Center Analyzer: from…