Описание
An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.
Ссылки
- Vendor AdvisoryPatch
Уязвимые конфигурации
Конфигурация 1Версия до 8.0 (исключая)
Одно из
cpe:2.3:a:hcltech:connections:*:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:-:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release1:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release10:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release2:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release3:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release4:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release5:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release6:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release7:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release8:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release9:*:*:*:*:*:*
EPSS
Процентиль: 6%
0.00159
Низкий
3.5 Low
CVSS3
Дефекты
CWE-213
Связанные уязвимости
CVSS3: 3.5
github
около 2 месяцев назад
An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.
EPSS
Процентиль: 6%
0.00159
Низкий
3.5 Low
CVSS3
Дефекты
CWE-213