Vulnerabilidades em HCLSoftware
94 resultadosAnálise Vexday
HCLSoftware apresenta volume significativo de vulnerabilidades (74 CVEs), com 55 divulgadas nos últimos 90 dias, indicando atividade recente relevante. A ausência de exploração ativa conhecida (0 KEV) e de vulnerabilidades críticas reduz a urgência imediata, mas a fraqueza dominante em exposição de informações (CWE-200) requer atenção em ambientes sensíveis.
CVE-2024-23566MEDIUMHCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various securityEPSS 0.3%CVE-2025-52603LOWHCL Connections is vulnerable to information disclosureEPSS 0.3%CVE-2026-21752HIGHHCL Hive is affected by a use of vulnerable third-party componentsEPSS 0.3%CVE-2026-21836MEDIUMHCL DominoIQ is affected by broken access controlEPSS 0.3%CVE-2026-56458MEDIUMHCL DevOps Deploy is susceptible to a Permissive Cross-domain Security Policy with Untrusted DomainsEPSS 0.3%CVE-2025-31990MEDIUMHCL DevOps Velocity is susceptible to a Denial of Service vulnerabilityEPSS 0.3%CVE-2025-62327MEDIUMHCL DevOps Deploy is susceptible to insufficiently protected credentialsEPSS 0.3%CVE-2026-56578LOWHCL MyCloud was affected by Server Version DisclosureEPSS 0.3%CVE-2023-37507MEDIUMAn information disclosure vulnerability affects HCL DevOps PlanEPSS 0.2%CVE-2026-56579LOWHCL MyCloud was affected with Exposure of Sensitive Information to an Unauthorized Actor.EPSS 0.2%CVE-2026-56587LOWHCL IEM was affected with Strict transport security not enforcedEPSS 0.2%CVE-2025-62328LOWHCL Nomad server on Domino is affected by a missing default frame-ancestors directiveEPSS 0.2%CVE-2024-23573LOWHCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 possible affects theEPSS 0.2%CVE-2026-21840LOWHCL BigFix Platform is affected by a user enumeration vulnerabilityEPSS 0.2%CVE-2025-68825HIGHHCL Hive is affected by incorrect default permissionsEPSS 0.2%CVE-2025-31991MEDIUMHCL DevOps Velocity is susceptible to brute-force attacksEPSS 0.2%CVE-2025-15633MEDIUMHCL BigFix WebUI is affected by an improper authorization vulnerabilityEPSS 0.2%CVE-2026-67071MEDIUMHCL DevOps Deploy / HCL Launch is susceptible to an Improper Removal of Sensitive Information Before Storage or TransferEPSS 0.2%CVE-2026-21759MEDIUMHCL Hive is affected by an information exposure vulnerabilityEPSS 0.2%CVE-2026-56583LOWHCL MyCloud was affected with Concurrent Login Vulnerability.EPSS 0.2%