Vulnerability Details CVE-2022-38660
HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker could exploit this vulnerability to perform actions in the application on behalf of the logged in user.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 48.7%
CVSS Severity
CVSS v3 Score 8.3
Products affected by CVE-2022-38660
-
cpe:2.3:a:hcltech:domino:-
-
cpe:2.3:a:hcltech:domino:9.0
-
cpe:2.3:a:hcltech:domino:9.0.1