Known Vulnerabilities for Appscan by Hcltech
Listed below are 8 of the newest known vulnerabilities associated with "Appscan" by "Hcltech".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-4393 json | HCL AppScan Standard is vulnerable to excessive authorization attempts | 9.8 - CRITICAL | 2020-04-07 | 2020-04-08 |
| CVE-2019-4392 json | HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unau... | 9.8 - CRITICAL | 2020-02-14 | 2020-02-19 |
| CVE-2019-4391 json | HCL AppScan Standard is vulnerable to XML External Entity Injection (XXE) attack when processing XML data | 8.2 - HIGH | 2020-04-07 | 2020-04-08 |
| CVE-2019-4327 json | "HCL AppScan Enterprise uses hard-coded credentials which can be exploited by attackers to get unauthorized access to applica... | 7.5 - HIGH | 2020-04-21 | 2020-04-29 |
| CVE-2019-4326 json | "HCL AppScan Enterprise security rules update administration section of the web application console is missing HTTP Strict-Tr... | 7.5 - HIGH | 2020-10-06 | 2020-10-19 |
| CVE-2019-4325 json | "HCL AppScan Enterprise makes use of broken or risky cryptographic algorithm to store REST API user details." | 5.3 - MEDIUM | 2020-10-06 | 2020-10-19 |
| CVE-2019-4324 json | "HCL AppScan Enterprise is susceptible to Cross-Site Scripting while importing a specially crafted test policy." | 6.1 - MEDIUM | 2020-07-07 | 2020-07-15 |
| CVE-2019-4323 json | "HCL AppScan Enterprise advisory API documentation is susceptible to clickjacking, which could allow an attacker to embed the... | 4.3 - MEDIUM | 2020-07-07 | 2020-07-15 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Hcltech | Appscan | 9.0.3.14 | |||
| Application | Hcltech | Appscan | 9.0.3.14 | |||
| Application | Hcltech | Appscan | 9.0.3.13 | |||
| Application | Hcltech | Appscan | 10.0.1 | |||
| Application | Hcltech | Appscan | 10.0.0 | |||
| Application | Hcltech | Appscan | 10.0.0 | |||
| Application | Hcltech | Appscan | - |