Show filters
218 Total Results
Displaying 1-10 of 218
Sort by:
Attacker Value
Unknown
CVE-2024-30106
Disclosure Date: October 28, 2024 (last updated November 09, 2024)
HCL Connections is vulnerable to an information disclosure vulnerability, due to an IBM WebSphere Application Server error, which could allow a user to obtain sensitive information they are not entitled to due to the improper handling of request data.
0
Attacker Value
Unknown
CVE-2023-50355
Disclosure Date: October 23, 2024 (last updated November 01, 2024)
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
0
Attacker Value
Unknown
CVE-2024-30122
Disclosure Date: October 23, 2024 (last updated November 07, 2024)
HCL Sametime is impacted by misconfigured security related HTTP headers. It was identified that some HTTP headers were missing on web service responses. This will lead to less secure browser default treatment for the policies controlled by these headers.
0
Attacker Value
Unknown
CVE-2024-30117
Disclosure Date: October 14, 2024 (last updated October 18, 2024)
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
0
Attacker Value
Unknown
CVE-2024-30118
Disclosure Date: October 09, 2024 (last updated October 12, 2024)
HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to because of improperly handling the request data.
0
Attacker Value
Unknown
CVE-2024-23586
Disclosure Date: September 27, 2024 (last updated October 08, 2024)
HCL Nomad is susceptible to an insufficient session expiration vulnerability. Under certain circumstances, an unauthenticated attacker could obtain old session information.
0
Attacker Value
Unknown
CVE-2024-23562
Disclosure Date: July 08, 2024 (last updated October 23, 2024)
A security vulnerability in HCL Domino could allow disclosure of sensitive configuration information. A remote unauthenticated attacker could exploit this vulnerability to obtain information to launch further attacks against the affected system.
0
Attacker Value
Unknown
CVE-2024-23588
Disclosure Date: July 05, 2024 (last updated July 09, 2024)
HCL Nomad server on Domino fails to properly handle users configured with limited Domino access resulting in a possible denial of service vulnerability.
0
Attacker Value
Unknown
CVE-2023-37539
Disclosure Date: June 06, 2024 (last updated July 17, 2024)
The Domino Catalog template is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability. An attacker with the ability to edit documents in the catalog application/database created from this template can embed a cross site scripting attack. The attack would be activated by an end user clicking it.
0
Attacker Value
Unknown
CVE-2023-45705
Disclosure Date: March 28, 2024 (last updated January 24, 2025)
An administrative user of WebReports may perform a Server Side Request Forgery (SSRF) exploit through SMTP configuration options.
0