Vulnerabilidades em HCLSoftware
94 resultadosAnálise Vexday
HCLSoftware apresenta volume significativo de vulnerabilidades (74 CVEs), com 55 divulgadas nos últimos 90 dias, indicando atividade recente relevante. A ausência de exploração ativa conhecida (0 KEV) e de vulnerabilidades críticas reduz a urgência imediata, mas a fraqueza dominante em exposição de informações (CWE-200) requer atenção em ambientes sensíveis.
CVE-2025-62341LOWHCL Connections is vulnerable to server-side request forgery (SSRF)EPSS 0.1%CVE-2026-21767MEDIUMHCL BigFix Platform is affected by insufficient authenticationEPSS 0.1%CVE-2026-21770MEDIUMHCL Traveler for Microsoft Outlook (HTMO) is susceptible to DLL hijackingEPSS 0.1%CVE-2026-21808MEDIUMHCL BigFix Quantum Risk Analyzer is affected by logging sensitive informationEPSS 0.1%CVE-2025-59866LOWThe HCL DFMPro, DFXAnalytics and DFXServer installers are affected by ‘Insecure file permissions Leading to Privilege Escalation’ vulnerabilEPSS 0.1%CVE-2026-21765HIGHHCL BigFix Platform is affected by insecure permissions on private cryptographic keysEPSS 0.1%CVE-2026-21786LOWHCL Sametime for iOS is affected by sensitive information disclosureEPSS 0.1%CVE-2025-62338LOWHCL BigFix Cloud Lifecycle Management is affected by lack of input validationEPSS 0.1%CVE-2025-31963LOWHCL BigFix IVR is impacted by improper authentication and missing CSRF protectionEPSS 0.1%CVE-2026-21807LOWHCL BigFix Quantum Risk Analyzer is affected by a stack-based buffer overflowEPSS 0.1%CVE-2026-21809LOWHCL BigFix Quantum Risk Analyzer is affected by generating error messages with sensitive informationEPSS 0.1%CVE-2024-23581MEDIUMHCL Traveler for Microsoft Outlook (HTMO) is susceptible to an application modification vulnerabilityEPSS 0.1%CVE-2025-31981MEDIUMHCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryptionEPSS 0.1%CVE-2026-21810MEDIUMHCL BigFix Quantum Risk Analyzer is affected by a hardcoded external resource reference and downloading code without integrity checkingEPSS 0.1%