BigFix Platform Insufficiently Protected Credentials Vulnerability

Summary

BigFix Platform is storing clear text credentials within the system’s memory. An attacker who is able to gain administrative privileges can use a program to create a memory dump and extract the credentials. These credentials can be used to pivot further into the environment. The principle of least privilege should be applied to all BigFix deployments, limiting administrative access.

Credit:

The information has been provided by Vendor

The original article can be found at:https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0080772


Details

BigFix Platform is storing clear text credentials within the system’s memory. An attacker who is able to gain administrative privileges can use a program to create a memory dump and extract the credentials. These credentials can be used to pivot further into the environment. The principle of least privilege should be applied to all BigFix deployments, limiting administrative access.

 

Vulnerable Systems:

BigFix Platform 

 

CVE Information:

CVE-2020-4095

 

Disclosure Timeline:
Published Date:7/16/2020

Categories: News