Vulnerability Details CVE-2022-38660
HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker could exploit this vulnerability to perform actions in the application on behalf of the logged in user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 27.3%
CVSS Severity
CVSS v3 Score 8.3
Products affected by CVE-2022-38660
-
cpe:2.3:a:hcltech:domino:-
-
cpe:2.3:a:hcltech:domino:9.0
-
cpe:2.3:a:hcltech:domino:9.0.1