A clickjacking vulnerability in the HCL BigFix OSD Bare Metal Server version 311.12 or lower allows attacker to use transparent or opaque layers to trick a user into clicking on a button or link on another page to perform a redirect to an attacker-controlled domain.
CVE ID: CVE-2023-23343
CVSS Base Severity: LOW
CVSS Base Score: 2.4
Vendor: HCL Software
Product: HCL BigFix OSD Bare Metal Server
EPSS Score: 0.06% (probability of being exploited)
EPSS Percentile: 26.17% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)