CVE-2024-23586

MEDIUM

Hcltech Hcl Nomad < 1.0.13 - Insufficient Session Expiration

Title source: rule
STIX 2.1

Description

HCL Nomad is susceptible to an insufficient session expiration vulnerability.   Under certain circumstances, an unauthenticated attacker could obtain old session information.

Scores

CVSS v3 5.3
EPSS 0.0038
EPSS Percentile 59.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-613
Status published
Products (1)
hcltech/hcl_nomad < 1.0.13
Published Sep 27, 2024
Tracked Since Feb 18, 2026