CVE-2023-37522
Hcltechsw Bigfix Bare Osd Metal Server Webui ≤ 311.28
CVSS Score v3.1
5.6
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
0.0041
34th percentile
Summary
CVE-2023-37522 is a medium-severity an unspecified weakness vulnerability in Hcltechsw Bigfix Bare Osd Metal Server Webui. Its CVSS base score is 5.6 (Medium).
Operationally, ranked at the 34th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2023-41409
Vulnerability Data
HCL BigFix Bare OSD Metal Server WebUI version 311.19 or lower has missing or insecure tags that could allow an attacker to execute a malicious script on the user's browser.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2023-37521Same product: Hcltechsw Bigfix Bare Osd Metal Server Webui
CVE-2023-37523Same product: Hcltechsw Bigfix Bare Osd Metal Server Webui
CVE-2025-0256Same vendor: Hcltechsw
CVE-2023-45703Same vendor: Hcltechsw
CVE-2024-42196Same vendor: Hcltechsw
CVE-2025-0272Same vendor: Hcltechsw
CVE-2025-62330Same vendor: Hcltechsw
CVE-2023-45700Same vendor: Hcltechsw
CVE-2025-0257Same vendor: Hcltechsw
CVE-2024-42195Same vendor: Hcltechsw
Affected Assets
hcltechsw
bigfix bare osd metal server webui
≤ 311.28
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.