İçeriğe atla
Noroxi

hcltechsw kayıtları

hcltechsw üreticisine ait 51 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

51 kayıt
  • CVE-2020-14275
    39İzleyin

    Security vulnerability in HCL Commerce 9.0.0.5 through 9.0.0.13, 9.0.1.0 through 9.0.1.14 and 9.1 through 9.1.4 could allow denial of servic

    KritikCVSS 9,8İstismar yokEPSS %1

    hcltechsw · hcl commerce12 Oca 2021

  • CVE-2020-14245
    39İzleyin

    HCL OneTest UI V9.5, V10.0, and V10.1 does not perform authentication for functionality that either requires a provable user identity or con

    KritikCVSS 9,8İstismar yokEPSS %1

    hcltechsw · onetest performance4 Şub 2021

  • CVE-2022-38656
    39İzleyin

    HCL Commerce, when using Elasticsearch, could be affected by a denial of service vulnerability

    KritikCVSS 9,8İstismar yokEPSS %1

    hcltechsw · hcl commerce12 Ara 2022

  • CVE-2023-37522
    39İzleyin

    HCL BigFix OSD Bare Metal Server WebUI is affected by missing or insecure tags

    KritikCVSS 9,8İstismar yokEPSS %0

    hcltechsw · bigfix bare osd metal server webui16 Oca 2024

  • CVE-2023-37523
    39İzleyin

    HCL BigFix OSD Bare Metal Server WebUI is affected by missing or insecure tags

    KritikCVSS 9,8İstismar yokEPSS %0

    hcltechsw · bigfix bare osd metal server webui16 Oca 2024

  • CVE-2021-27741
    36İzleyin

    " Security vulnerability in HCL Commerce Management Center allowing XML external entity (XXE) injection"

    KritikCVSS 9,1İstismar yokEPSS %1

    hcltechsw · hcl commerce13 Ağu 2021

  • CVE-2020-14231
    35İzleyin

    A vulnerability in the input parameter handling of HCL Client Application Access v9 could potentially be exploited by an authenticated attac

    YüksekCVSS 8,8İstismar yokEPSS %1

    hcltechsw · hcl client application access22 Ara 2020

  • CVE-2020-14274
    30İzleyin

    Information disclosure vulnerability in HCL Commerce 9.0.1.9 through 9.0.1.14 and 9.1 through 9.1.4 could allow a remote attacker to obtain

    YüksekCVSS 7,5İstismar yokEPSS %1

    hcltechsw · hcl commerce12 Oca 2021

  • CVE-2020-14246
    30İzleyin

    HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak.

    YüksekCVSS 7,5İstismar yokEPSS %1

    hcltechsw · onetest performance4 Şub 2021

  • CVE-2023-45703
    30İzleyin

    HCL Launch is susceptible to a Denial of Service vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %0

    hcltechsw · hcl launch20 Ara 2023

  • CVE-2025-0257
    30İzleyin

    HCL DevOps Deploy / HCL Launch is susceptible to unauthorized access to other services

    YüksekCVSS 7,5İstismar yokEPSS %0

    hcltechsw · hcl devops deploy2 Nis 2025

  • CVE-2026-56458
    30İzleyin

    HCL DevOps Deploy is susceptible to a Permissive Cross-domain Security Policy with Untrusted Domains

    YüksekCVSS 7,5İstismar yokEPSS %0

    hcltechsw · hcl devops deploy9 Tem 2026

  • CVE-2025-0272
    30İzleyin

    HCL DevOps Deploy / HCL Launch is susceptible to an HTML injection vulnerability

    YüksekCVSS 7,6İstismar yokEPSS %0

    hcltechsw · hcl devops deploy3 Nis 2025

  • CVE-2025-0255
    28İzleyin

    HCL DevOps Deploy / HCL Launch is susceptible to command injection vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %1

    hcltechsw · hcl devops deploy24 Mar 2025

  • CVE-2024-23576
    28İzleyin

    HCL Commerce is potentially affected by a denial of service and information disclosure vulnerability

    YüksekCVSS 7,1İstismar yokEPSS %0

    hcltechsw · hcl commerce14 May 2024

  • CVE-2022-38661
    28İzleyin

    HCL Workload Automation is affected by a vulnerability in Jlog component of the Master Domain Manager

    YüksekCVSS 7,1İstismar yokEPSS %0

    hcltechsw · hcl workload automation12 Ara 2022

  • CVE-2024-42195
    27İzleyin

    HCL DevOps Deploy / HCL Launch is vulnerable to HTML injection

    OrtaCVSS 6,8İstismar yokEPSS %0

    hcltechsw · hcl devops deploy5 Ara 2024

  • CVE-2020-14225
    26İzleyin

    HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content.

    OrtaCVSS 6,5İstismar yokEPSS %1

    hcltech · hcl inotes21 Ara 2020

  • CVE-2020-14247
    26İzleyin

    HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a val

    OrtaCVSS 6,5İstismar yokEPSS %1

    hcltechsw · onetest performance4 Şub 2021

  • CVE-2022-27551
    26İzleyin

    HCL Launch could allow an authenticated user to obtain sensitive information (CVE-2022-27551)

    OrtaCVSS 6,5İstismar yokEPSS %1

    hcltechsw · hcl launch3 Ağu 2022

  • CVE-2023-45701
    26İzleyin

    HCL Launch is susceptible to sensitive information disclosure

    OrtaCVSS 6,5İstismar yokEPSS %0

    hcltechsw · hcl launch28 Ara 2023

  • CVE-2022-44756
    26İzleyin

    HCL BigFix Insights for Vulnerability Remediation (IVR) is vulnerable to improper input validation

    OrtaCVSS 6,5İstismar yokEPSS %0

    hcltechsw · bigfix insights for vulnerability remediation21 Ara 2022

  • CVE-2026-56460
    26İzleyin

    HCL DevOps Deploy / HCL Launch is susceptible to an Insertion of Sensitive Information Into Sent Data vulnerability

    OrtaCVSS 6,5İstismar yokEPSS %0

    hcltechsw · hcl devops deploy9 Tem 2026

  • CVE-2025-0256
    26İzleyin

    HCL DevOps Deploy / HCL Launch is susceptible to a sensitive information disclosure

    OrtaCVSS 6,5İstismar yokEPSS %0

    hcltechsw · hcl devops deploy24 Mar 2025

  • CVE-2024-23558
    25İzleyin

    HCL DevOps Deploy / HCL Launch does not invalidate all session authentication cookies after logout

    OrtaCVSS 6,3İstismar yokEPSS %0

    hcltechsw · hcl devops deploy15 Nis 2024