Show filters
66 Total Results
Displaying 31-40 of 66
Sort by:
Attacker Value
Unknown
CVE-2024-30132
Disclosure Date: October 01, 2024 (last updated October 02, 2024)
HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown
CVE-2024-30134
Disclosure Date: September 26, 2024 (last updated September 27, 2024)
The HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.
0
Attacker Value
Unknown
CVE-2024-30128
Disclosure Date: September 25, 2024 (last updated September 26, 2024)
HCL Nomad server on Domino is affected by an open proxy vulnerability in which an unauthenticated attacker can mask their original source IP address. This may enable an attacker to trick the user into exposing sensitive information.
0
Attacker Value
Unknown
CVE-2024-30130
Disclosure Date: July 19, 2024 (last updated July 19, 2024)
HCL Nomad server on Domino is vulnerable to the cache containing sensitive information which could potentially give an attacker the ability to acquire the sensitive information.
0
Attacker Value
Unknown
CVE-2024-30126
Disclosure Date: July 18, 2024 (last updated July 19, 2024)
HCL BigFix Compliance is affected by a missing X-Frame-Options HTTP header which can allow an attacker to create a malicious website that embeds the target website in a frame or iframe, tricking users into performing actions on the target website without their knowledge.
0
Attacker Value
Unknown
CVE-2024-30125
Disclosure Date: July 18, 2024 (last updated July 19, 2024)
HCL BigFix Compliance server can respond with an HTTP status of 500, indicating a server-side error that may cause the server process to die.
0
Attacker Value
Unknown
CVE-2024-30135
Disclosure Date: June 28, 2024 (last updated June 29, 2024)
HCL DRYiCE AEX is potentially impacted by disclosure of sensitive information in the mobile application when a snapshot is taken.
0
Attacker Value
Unknown
CVE-2024-30111
Disclosure Date: June 28, 2024 (last updated June 29, 2024)
HCL DRYiCE AEX product is impacted by Missing
Root Detection vulnerability in the mobile application. The mobile app can be installed in the rooted
device due to which malicious users can gain unauthorized access to the rooted
devices, compromising security and potentially leading to data breaches or
other malicious activities.
0
Attacker Value
Unknown
CVE-2024-30110
Disclosure Date: June 28, 2024 (last updated June 29, 2024)
HCL DRYiCE
AEX product is impacted by lack of input validation vulnerability in a particular web application. A malicious script can be injected into a system which
can cause the system to behave in unexpected ways.
0
Attacker Value
Unknown
CVE-2024-30109
Disclosure Date: June 28, 2024 (last updated June 29, 2024)
HCL DRYiCE AEX is impacted by a lack of clickjacking protection in the AEX web application. An attacker can use multiple transparent or opaque layers to trick a user into clicking on a button or link on another page than the one intended.
0