hcltech kayıtları
hcltech üreticisine ait 460 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %0,4
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')65
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor35
- CWE-209 Generation of Error Message Containing Sensitive Information19
- CWE-327 Use of a Broken or Risky Cryptographic Algorithm15
- CWE-352 Cross-Site Request Forgery (CSRF)11
- CWE-284 Improper Access Control11
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
460 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2020-14244İstismar yok | A vulnerability in the MIME message handling of the Domino server (versions 9 and 10) could potentially be exploited by an unauthenticated ahcltech · domino · CWE-787 | Kritik9,8 | — | %3,0 | 14 Ara 2020 |
40Planlayın | CVE-2020-14224İstismar yok | A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be exploited by an unauthenticated attacker resulthcltech · notes · CWE-787 | Kritik9,8 | — | %2,3 | 18 Ara 2020 |
40Planlayın | CVE-2020-14268İstismar yok | A vulnerability in the MIME message handling of the Notes client (versions 9 and 10) could potentially be exploited by an unauthenticated athcltech · notes · CWE-787 | Kritik9,8 | — | %2,3 | 14 Ara 2020 |
39İzleyin | CVE-2020-14260İstismar yok | HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input.hcltech · domino · CWE-120 | Kritik9,8 | — | %1,5 | 1 Ara 2020 |
39İzleyin | CVE-2019-4392İstismar yok | HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unauthorized accesshcltech · appscan · CWE-798 | Kritik9,8 | — | %1,4 | 14 Şub 2020 |
39İzleyin | CVE-2020-4101İstismar yok | "HCL Digital Experience is susceptible to Server Side Request Forgery."hcltech · hcl digital experience · CWE-918 | Kritik9,8 | — | %1,1 | 11 Haz 2020 |
39İzleyin | CVE-2019-4393İstismar yok | HCL AppScan Standard is vulnerable to excessive authorization attemptshcltech · appscan · CWE-307 | Kritik9,8 | — | %1,0 | 7 Nis 2020 |
39İzleyin | CVE-2023-45723İstismar yok | Path Traversal which allows file upload capability affects DRYiCE MyXalyticshcltech · dryice myxalytics · CWE-22 | Kritik9,8 | — | %1,0 | 2 Oca 2024 |
39İzleyin | CVE-2025-55270İstismar yok | HCL Aftermarket DPC is affected by Improper Input Validationhcltech · aftermarket cloud · CWE-20 | Kritik9,8 | — | %1,0 | 26 Mar 2026 |
39İzleyin | CVE-2021-27762İstismar yok | HCL BigFix Platform is affected by misconfigured security-related HTTP headershcltech · bigfix platform | Kritik9,8 | — | %0,7 | 6 May 2022 |
39İzleyin | CVE-2023-45722İstismar yok | Path Traversal Arbitrary File Read affects DRYiCE MyXalyticshcltech · dryice myxalytics · CWE-22 | Kritik9,8 | — | %0,7 | 2 Oca 2024 |
39İzleyin | CVE-2025-52626İstismar yok | HCL AION is susceptible to Potential Command Injection vulnerabilityhcltech · aion · CWE-78 | Kritik9,8 | — | %0,6 | 3 Şub 2026 |
39İzleyin | CVE-2021-27786İstismar yok | HCL OneTest Server is vulnerable to Cross Origin Resource Sharing: Arbitrary Origin Trustedhcltech · onetest server · CWE-942 | Kritik9,8 | — | %0,6 | 9 Haz 2022 |
39İzleyin | CVE-2023-50347İstismar yok | Insecure SQL Interface affects HCL DRYiCE MyXalyticshcltech · dryice myxalytics · CWE-89 | Kritik9,8 | — | %0,6 | 9 Nis 2024 |
39İzleyin | CVE-2023-45724İstismar yok | Unauthenticated File Upload affects DRYiCE MyXalyticshcltech · dryice myxalytics · CWE-434 | Kritik9,8 | — | %0,5 | 2 Oca 2024 |
39İzleyin | CVE-2024-30110İstismar yok | Lack of input validation vulnerability affects DRYiCE AEX v10hcltech · dryice aex · CWE-20 | Kritik9,8 | — | %0,5 | 28 Haz 2024 |
39İzleyin | CVE-2023-37503İstismar yok | A weak password requirements vulnerability affects HCL Compasshcltech · hcl compass · CWE-521 | Kritik9,8 | — | %0,5 | 18 Eki 2023 |
39İzleyin | CVE-2025-59872İstismar yok | HCL ZIE for Web is affetced by an Unrestricted File Upload vulnerability,hcltech · zie for web · CWE-209 | Kritik9,8 | — | %0,5 | 17 Haz 2026 |
39İzleyin | CVE-2024-42172İstismar yok | HCL MyXalytics is affected by broken authenticationhcltech · dryice myxalytics · CWE-287 | Kritik9,8 | — | %0,4 | 11 Oca 2025 |
39İzleyin | CVE-2025-31998İstismar yok | HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which exposes sensitive informationhcltech · unica centralized offer management · CWE-209 | Kritik9,8 | — | %0,4 | 11 Eki 2025 |
39İzleyin | CVE-2026-56453İstismar yok | HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability.hcltech · dfxanalytics · CWE-294 | Kritik9,8 | — | %0,4 | 16 Tem 2026 |
39İzleyin | CVE-2025-52618İstismar yok | HCL BigFix SaaS Authentication Service is affected by a SQL injection vulnerabilityhcltech · bigfix saas · CWE-89 | Kritik9,8 | — | %0,3 | 15 Ağu 2025 |
39İzleyin | CVE-2025-52660İstismar yok | HCL AION is affected by an Host Header Injection vulnerabilityhcltech · aion · CWE-644 | Kritik9,8 | — | %0,3 | 19 Oca 2026 |
39İzleyin | CVE-2025-55261İstismar yok | HCL Aftermarket DPC is affected by Missing Functional Level Access Controlhcltech · aftermarket cloud · CWE-284 | Kritik9,8 | — | %0,3 | 26 Mar 2026 |
39İzleyin | CVE-2025-55267İstismar yok | HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerabilityhcltech · aftermarket cloud · CWE-434 | Kritik9,8 | — | %0,3 | 26 Mar 2026 |
- CVE-2020-1424440Planlayın
A vulnerability in the MIME message handling of the Domino server (versions 9 and 10) could potentially be exploited by an unauthenticated a
KritikCVSS 9,8İstismar yokEPSS %3hcltech · domino14 Ara 2020
- CVE-2020-1422440Planlayın
A vulnerability in the MIME message handling of the HCL Notes v9 client could potentially be exploited by an unauthenticated attacker result
KritikCVSS 9,8İstismar yokEPSS %2hcltech · notes18 Ara 2020
- CVE-2020-1426840Planlayın
A vulnerability in the MIME message handling of the Notes client (versions 9 and 10) could potentially be exploited by an unauthenticated at
KritikCVSS 9,8İstismar yokEPSS %2hcltech · notes14 Ara 2020
- CVE-2020-1426039İzleyin
HCL Domino is susceptible to a Buffer Overflow vulnerability in DXL due to improper validation of user input.
KritikCVSS 9,8İstismar yokEPSS %1hcltech · domino1 Ara 2020
- CVE-2019-439239İzleyin
HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unauthorized access
KritikCVSS 9,8İstismar yokEPSS %1hcltech · appscan14 Şub 2020
- CVE-2020-410139İzleyin
"HCL Digital Experience is susceptible to Server Side Request Forgery."
KritikCVSS 9,8İstismar yokEPSS %1hcltech · hcl digital experience11 Haz 2020
- CVE-2019-439339İzleyin
HCL AppScan Standard is vulnerable to excessive authorization attempts
KritikCVSS 9,8İstismar yokEPSS %1hcltech · appscan7 Nis 2020
- CVE-2023-4572339İzleyin
Path Traversal which allows file upload capability affects DRYiCE MyXalytics
KritikCVSS 9,8İstismar yokEPSS %1hcltech · dryice myxalytics2 Oca 2024
- CVE-2025-5527039İzleyin
HCL Aftermarket DPC is affected by Improper Input Validation
KritikCVSS 9,8İstismar yokEPSS %1hcltech · aftermarket cloud26 Mar 2026
- CVE-2021-2776239İzleyin
HCL BigFix Platform is affected by misconfigured security-related HTTP headers
KritikCVSS 9,8İstismar yokEPSS %1hcltech · bigfix platform6 May 2022
- CVE-2023-4572239İzleyin
Path Traversal Arbitrary File Read affects DRYiCE MyXalytics
KritikCVSS 9,8İstismar yokEPSS %1hcltech · dryice myxalytics2 Oca 2024
- CVE-2025-5262639İzleyin
HCL AION is susceptible to Potential Command Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1hcltech · aion3 Şub 2026
- CVE-2021-2778639İzleyin
HCL OneTest Server is vulnerable to Cross Origin Resource Sharing: Arbitrary Origin Trusted
KritikCVSS 9,8İstismar yokEPSS %1hcltech · onetest server9 Haz 2022
- CVE-2023-5034739İzleyin
Insecure SQL Interface affects HCL DRYiCE MyXalytics
KritikCVSS 9,8İstismar yokEPSS %1hcltech · dryice myxalytics9 Nis 2024
- CVE-2023-4572439İzleyin
Unauthenticated File Upload affects DRYiCE MyXalytics
KritikCVSS 9,8İstismar yokEPSS %1hcltech · dryice myxalytics2 Oca 2024
- CVE-2024-3011039İzleyin
Lack of input validation vulnerability affects DRYiCE AEX v10
KritikCVSS 9,8İstismar yokEPSS %0hcltech · dryice aex28 Haz 2024
- CVE-2023-3750339İzleyin
A weak password requirements vulnerability affects HCL Compass
KritikCVSS 9,8İstismar yokEPSS %0hcltech · hcl compass18 Eki 2023
- CVE-2025-5987239İzleyin
HCL ZIE for Web is affetced by an Unrestricted File Upload vulnerability,
KritikCVSS 9,8İstismar yokEPSS %0hcltech · zie for web17 Haz 2026
- CVE-2024-4217239İzleyin
HCL MyXalytics is affected by broken authentication
KritikCVSS 9,8İstismar yokEPSS %0hcltech · dryice myxalytics11 Oca 2025
- CVE-2025-3199839İzleyin
HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which exposes sensitive information
KritikCVSS 9,8İstismar yokEPSS %0hcltech · unica centralized offer management11 Eki 2025
- CVE-2026-5645339İzleyin
HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability.
KritikCVSS 9,8İstismar yokEPSS %0hcltech · dfxanalytics16 Tem 2026
- CVE-2025-5261839İzleyin
HCL BigFix SaaS Authentication Service is affected by a SQL injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %0hcltech · bigfix saas15 Ağu 2025
- CVE-2025-5266039İzleyin
HCL AION is affected by an Host Header Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %0hcltech · aion19 Oca 2026
- CVE-2025-5526139İzleyin
HCL Aftermarket DPC is affected by Missing Functional Level Access Control
KritikCVSS 9,8İstismar yokEPSS %0hcltech · aftermarket cloud26 Mar 2026
- CVE-2025-5526739İzleyin
HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability
KritikCVSS 9,8İstismar yokEPSS %0hcltech · aftermarket cloud26 Mar 2026