CVE-2026-21810
MEDIUM
4,4
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: high
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: high
Availability: none
Description
AI Translation Available
HCL BigFix Quantum Risk Analyzer is affected by a hardcoded external resource reference and a lack of binary integrity which could allow an attacker to obtain sensitive information or modify the binary.
494
Download of Code Without Integrity Check
DraftCommon Consequences
Security Scopes Affected:
Integrity
Availability
Confidentiality
Other
Potential Impacts:
Execute Unauthorized Code Or Commands
Alter Execution Logic
Other
Applicable Platforms
All platforms may be affected
610
Externally Controlled Reference to a Resource in Another Sphere
DraftCommon Consequences
Security Scopes Affected:
Confidentiality
Integrity
Access Control
Potential Impacts:
Read Application Data
Modify Application Data
Gain Privileges Or Assume Identity
Applicable Platforms
All platforms may be affected
https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0133289