hcltech
395 tracked vulnerabilities.
CVE-2024-30118
LOW
HCL Connections - Exposure of Sensitive Information via Improper Request Handling
Oct 09, 2024
CVSS 3.5
EPSS 0.01
CVE-2024-30132
LOW
HCL Nomad Server on Domino < 1.0.13 - Sensitive Information Exposure via Missing HTTP Security Headers
Oct 01, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-23586
MEDIUM
HCL Nomad < 1.0.13 - Unauthenticated Insufficient Session Expiration
Sep 27, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-30134
MEDIUM
HCL Traveler for Microsoft Outlook < 3.0.9 - Improper Certificate Validation
Sep 26, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-30128
HIGH
HCL Nomad Server on Domino - Open Proxy IP Masking
Sep 25, 2024
CVSS 8.6
EPSS 0.00
CVE-2024-30130
LOW
HCL Nomad Server on Domino < 1.0.12 - Sensitive Information Exposure via Browser Cache
Jul 19, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-30126
MEDIUM
HCL BigFix Compliance < 2.0.11 - Clickjacking via Missing X-Frame-Options Header
Jul 18, 2024
CVSS 4.7
EPSS 0.01
CVE-2024-30125
MEDIUM
HCL BigFix Compliance < 2.0.11 - Denial of Service
Jul 18, 2024
CVSS 6.2
EPSS 0.00
CVE-2024-23562
MEDIUM
HCL Domino - Unauthenticated Sensitive Information Exposure
Jul 08, 2024
CVSS 5.3
EPSS 0.01
CVE-2024-23588
MEDIUM
HCL Nomad Server on Domino < 1.0.12 - Denial of Service
Jul 05, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-30135
LOW
HCL DRYiCE AEX - Exposure of Sensitive Information via Mobile Application Snapshot
Jun 28, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-30111
LOW
HCL DRYiCE AEX - Missing Root Detection
Jun 28, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-30110
LOW
HCL DRYiCE AEX - Cross-Site Scripting via Input Validation Bypass
Jun 28, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-30109
LOW
HCL DRYiCE AEX - Clickjacking via Unprotected UI Layers
Jun 28, 2024
CVSS 3.7
EPSS 0.00
CVE-2024-30112
MEDIUM
HCL Connections - Cross-Site Scripting
Jun 25, 2024
CVSS 5.4
EPSS 0.01
CVE-2024-23556
MEDIUM
HCL BigFix Platform 9.5-9.5.25 - Denial of Service via SSL/TLS Renegotiation
May 18, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-23554
MEDIUM
HCL BigFix Platform 9.5-9.5.24 - Cross-Site Request Forgery
May 18, 2024
CVSS 5.7
EPSS 0.01
CVE-2024-23583
MEDIUM
HCL BigFix Platform 9.5-9.5.24 - Insufficiently Protected Credentials via Task Manager
May 17, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-30107
LOW
HCL Connections - Improper Access Control
Apr 18, 2024
CVSS 3.5
EPSS 0.00
CVE-2024-23557
LOW
HCL Connections - User Enumeration via Valid User Determination
Apr 18, 2024
CVSS 3.5
EPSS 0.00
CVE-2024-23553
LOW
HCL BigFix Platform 9.5-9.5.23 - Cross-Site Scripting in Web Reports
Feb 02, 2024
CVSS 3.0
EPSS 0.00
CVE-2023-37525
MEDIUM
HCL BigFix Compliance - Unauthenticated Sensitive Information Disclosure via WEB-INF Directory Access
Jan 28, 2026
CVSS 5.3
EPSS 0.00
CVE-2023-45721
MEDIUM
HCL Domino Leap 1.1-1.1.3 - Unauthenticated Exposure of Private Personal Information
Apr 30, 2025
CVSS 5.3
EPSS 0.00
CVE-2023-37535
HIGH
HCL Domino Leap 1.1-1.1.3 - Cross-Site Scripting via Query Parameter Injection
Apr 30, 2025
CVSS 7.1
EPSS 0.00
CVE-2023-37517
LOW
HCL Domino Leap 1.1-1.1.1 - Sensitive Data Exposure via Missing Cache Headers
Apr 30, 2025
CVSS 3.2
EPSS 0.00
Products
bigfix_platform 33
dryice_myxalytics 31
aion 29
connections 22
domino 22
bigfix_service_management 18
aftermarket_cloud 17
sametime 17
unica 17
hcl_leap 11
notes 11
bigfix_mobile 10
bigfix_compliance 9
domino_leap 9
appscan 8
digital_experience 8
bigfix_webui 7
hcl_inotes 7
bigfix_modern_client_management 6
dryice_iautomate 6
traveler 6
bigfix_insights_for_vulnerability_remediation 5
dfxanalytics 5
intelliops_event_management 5
traveler_for_microsoft_outlook 5
verse 5
bigfix_saas 4
dryice_aex 4
hcl_compass 4
hcl_digital_experience 4
Quick Filters