Vulnerabilities
Vulnerable Software
Hcltechsw:  Security Vulnerabilities
HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content. A remote unauthenticated attacker could use this vulnerability to trick the end user into entering sensitive information such as credentials, e.g. as part of a phishing attack.
CVSS Score
6.5
EPSS Score
0.006
Published
2020-12-21
"HCL Verse for Android was found to employ dynamic code loading. This mechanism allows a developer to specify which components of the application should not be loaded by default when the application is started. Typically, core components and additional dependencies are loaded natively at runtime; however, dynamically loaded components are only loaded as they are specifically requested. While this can have a positive impact on performance, or grant additional functionality (for example, a non-invasive update feature), it can also open the application to loading unintended code if not implemented properly."
CVSS Score
4.4
EPSS Score
0.001
Published
2020-07-15


Contact Us

Shodan ® - All rights reserved