Vulnerability Details CVE-2022-38660
HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker could exploit this vulnerability to perform actions in the application on behalf of the logged in user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.5%
CVSS Severity
CVSS v3 Score 8.3
Products affected by CVE-2022-38660
-
cpe:2.3:a:hcltech:domino:-
-
cpe:2.3:a:hcltech:domino:9.0
-
cpe:2.3:a:hcltech:domino:9.0.1