Known Vulnerabilities for products from Hcltechsw
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Hcltechsw".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-27785 | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 5 - MEDIUM | 2022-07-30 | 2022-08-10 |
| CVE-2021-27751 | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 3.3 - LOW | 2022-05-06 | 2022-05-16 |
| CVE-2021-27746 | "HCL Connections Security Update for Reflected Cross-Site Scripting (XSS) Vulnerability" | 5.4 - MEDIUM | 2021-10-21 | 2021-10-26 |
| CVE-2021-27741 | " Security vulnerability in HCL Commerce Management Center allowing XML external entity (XXE) injection" | 9.1 - CRITICAL | 2021-08-13 | 2021-08-24 |
| CVE-2020-14275 | Security vulnerability in HCL Commerce 9.0.0.5 through 9.0.0.13, 9.0.1.0 through 9.0.1.14 and 9.1 through 9.1.4 could allow d... | 9.8 - CRITICAL | 2021-01-12 | 2021-01-14 |
| CVE-2020-14274 | Information disclosure vulnerability in HCL Commerce 9.0.1.9 through 9.0.1.14 and 9.1 through 9.1.4 could allow a remote atta... | 7.5 - HIGH | 2021-01-12 | 2021-07-21 |
| CVE-2020-14247 | HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to gues... | 6.5 - MEDIUM | 2021-02-04 | 2021-02-09 |
| CVE-2020-14246 | HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potentially ... | 7.5 - HIGH | 2021-02-04 | 2021-07-21 |
| CVE-2020-14245 | HCL OneTest UI V9.5, V10.0, and V10.1 does not perform authentication for functionality that either requires a provable user ... | 9.8 - CRITICAL | 2021-02-04 | 2021-07-21 |
| CVE-2020-14231 | A vulnerability in the input parameter handling of HCL Client Application Access v9 could potentially be exploited by an auth... | 8.8 - HIGH | 2020-12-22 | 2021-07-21 |
| CVE-2020-14225 | HCL iNotes is susceptible to a Tabnabbing vulnerability caused by improper sanitization of message content. A remote unauthen... | 6.5 - MEDIUM | 2020-12-21 | 2020-12-23 |
| CVE-2020-4100 | "HCL Verse for Android was found to employ dynamic code loading. This mechanism allows a developer to specify which component... | 4.4 - MEDIUM | 2020-07-15 | 2020-07-22 |
Known software with vulnerabilities from Hcltechsw
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Hcltechsw | Hcl Client Application Access | 9.0 |
| Application | Hcltechsw | Hcl Commerce | 9.0.1.0 |
| Application | Hcltechsw | Hcl Inotes | 9.0.1 |
| Application | Hcltechsw | Hcl Verse | 11.0.4 |