Vulnerabilities (CVE)

Filtered by vendor Hcltech Subscribe
Total 185 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-30122 1 Hcltech 1 Sametime 2024-11-06 N/A 5.3 MEDIUM
HCL Sametime is impacted by misconfigured security related HTTP headers. It was identified that some HTTP headers were missing on web service responses. This will lead to less secure browser default treatment for the policies controlled by these headers.
CVE-2023-50355 1 Hcltech 1 Sametime 2024-10-31 N/A 5.3 MEDIUM
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
CVE-2024-30117 1 Hcltech 1 Bigfix Platform 2024-10-17 N/A 5.3 MEDIUM
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
CVE-2024-30118 1 Hcltech 1 Connections 2024-10-10 N/A 5.7 MEDIUM
HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to because of improperly handling the request data.
CVE-2024-23586 1 Hcltech 2 Domino, Hcl Nomad 2024-10-07 N/A 7.5 HIGH
HCL Nomad is susceptible to an insufficient session expiration vulnerability.   Under certain circumstances, an unauthenticated attacker could obtain old session information.