Vulnerability Details CVE-2025-31959
HCL BigFix Service Management (SM) application fails to strip EXIF metadata from uploaded images. This could lead to confidentiality and privacy risks if sensitive location information is unintentionally shared. .
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.1%
CVSS Severity
CVSS v3 Score 3.5
Products affected by CVE-2025-31959
-
cpe:2.3:a:hcltech:bigfix_service_management:23.0