Vulnerabilities
Vulnerable Software
Hcltechsw:  Security Vulnerabilities
HCL Launch could disclose sensitive information if a manual edit of a configuration file has been performed.
CVSS Score
5.1
EPSS Score
0.001
Published
2023-07-10
HCL Launch is vulnerable to HTML injection.  HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.
CVSS Score
4.6
EPSS Score
0.003
Published
2023-04-02
Insights for Vulnerability Remediation (IVR) is vulnerable to man-in-the-middle attacks that may lead to information disclosure.  This requires privileged network access.
CVSS Score
6.4
EPSS Score
0.001
Published
2022-12-21
Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation. This may lead to information disclosure. This requires privileged access. 
CVSS Score
6.4
EPSS Score
0.002
Published
2022-12-21
HCL Commerce, when using Elasticsearch, can allow a remote attacker to cause a denial of service attack on the site and make administrative changes.
CVSS Score
8.6
EPSS Score
0.009
Published
2022-12-12
HCL Workload Automation could allow a local user to overwrite key system files which would cause the system to crash.
CVSS Score
6.2
EPSS Score
0.0
Published
2022-12-12
HCL Launch could allow a user with administrative privileges, including "Manage Security" permissions, the ability to recover a credential previously saved for performing authenticated LDAP searches.
CVSS Score
4.9
EPSS Score
0.001
Published
2022-12-12
HCL Launch could allow an authenticated user to obtain sensitive information in some instances due to improper security checking.
CVSS Score
5.3
EPSS Score
0.002
Published
2022-08-03
HCL Commerce's Remote Store server could allow a local attacker to obtain sensitive personal information. The vulnerability requires the victim to first perform a particular operation on the website.
CVSS Score
3.9
EPSS Score
0.001
Published
2022-07-30
HCL Launch stores user credentials in plain clear text which can be read by a local user.
CVSS Score
4.9
EPSS Score
0.001
Published
2022-07-06


Contact Us

Shodan ® - All rights reserved