<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Wed, 07 Oct 2026 04:44:56 +0000</lastBuildDate>
    <item>
      <title>CVE-2025-31962 — HCL BigFix IVR is impacted by an insufficient session expiration vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2025-31962</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HCLSoftware BigFix IVR&lt;/p&gt;
&lt;p&gt;Insufficient session expiration in the Web UI authentication component in HCL BigFix IVR version 4.2 allows an authenticated attacker to gain prolonged unauthorized access to protected API endpoints due to excessive expiration periods.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; HCLSoftware BigFix IVR&lt;/p&gt;
&lt;p&gt;Insufficient session expiration in the Web UI authentication component in HCL BigFix IVR version 4.2 allows an authenticated attacker to gain prolonged unauthorized access to protected API endpoints due to excessive expiration periods.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2025-31962</guid>
    </item>
  </channel>
</rss>
