Show filters
287 Total Results
Displaying 31-40 of 287
Sort by:
Attacker Value
Unknown

CVE-2023-50355

Disclosure Date: October 23, 2024 (last updated November 01, 2024)
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
Attacker Value
Unknown

CVE-2024-30124

Disclosure Date: October 23, 2024 (last updated October 24, 2024)
HCL Sametime is impacted by insecure services in-use on the UIM client by default. An unused legacy REST service was enabled by default using the HTTP protocol. An attacker could potentially use this service endpoint maliciously.
0
Attacker Value
Unknown

CVE-2024-30122

Disclosure Date: October 23, 2024 (last updated November 07, 2024)
HCL Sametime is impacted by misconfigured security related HTTP headers. It was identified that some HTTP headers were missing on web service responses. This will lead to less secure browser default treatment for the policies controlled by these headers.
Attacker Value
Unknown

CVE-2024-30117

Disclosure Date: October 14, 2024 (last updated October 18, 2024)
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
Attacker Value
Unknown

CVE-2024-30118

Disclosure Date: October 09, 2024 (last updated October 12, 2024)
HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to because of improperly handling the request data.
Attacker Value
Unknown

CVE-2024-30132

Disclosure Date: October 01, 2024 (last updated October 02, 2024)
HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2024-23586

Disclosure Date: September 27, 2024 (last updated October 08, 2024)
HCL Nomad is susceptible to an insufficient session expiration vulnerability.   Under certain circumstances, an unauthenticated attacker could obtain old session information.
Attacker Value
Unknown

CVE-2024-30134

Disclosure Date: September 26, 2024 (last updated September 27, 2024)
The HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.
0
Attacker Value
Unknown

CVE-2024-30128

Disclosure Date: September 25, 2024 (last updated September 26, 2024)
HCL Nomad server on Domino is affected by an open proxy vulnerability in which an unauthenticated attacker can mask their original source IP address. This may enable an attacker to trick the user into exposing sensitive information.
0
Attacker Value
Unknown

CVE-2024-30130

Disclosure Date: July 19, 2024 (last updated July 19, 2024)
HCL Nomad server on Domino is vulnerable to the cache containing sensitive information which could potentially give an attacker the ability to acquire the sensitive information.
0