← back
CVE-2026-56608lowCWE-284

HCL iControl is affected by multiple security vulnerabilities(CVE-2026-56608 and CVE-2026-56609).

8Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 3.7epss 0.2%
exploitation probability
0.2%top 94% of all CVEs
observed exploitation
nono source reports it
HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular access controls, allowing users to access or view administrator-level functionalities without appropriate authorization.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N