Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-254g-wcpq-w26f

Опубликовано: 26 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 2.6

Описание

HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability. CORS misconfigurations includes the exposure of sensitive user information to attackers, unauthorized access to APIs, and possible data manipulation or leakage. If an attacker to exploit CORS misconfiguration, they could steal sensitive data, perform actions on behalf of a legitimate user.

HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability. CORS misconfigurations includes the exposure of sensitive user information to attackers, unauthorized access to APIs, and possible data manipulation or leakage. If an attacker to exploit CORS misconfiguration, they could steal sensitive data, perform actions on behalf of a legitimate user.

EPSS

Процентиль: 9%
0.00032
Низкий

2.6 Low

CVSS3

Дефекты

CWE-942

EPSS

Процентиль: 9%
0.00032
Низкий

2.6 Low

CVSS3

Дефекты

CWE-942