Vulnerabilities (CVE)

Filtered by vendor Hcltech Subscribe
Total 306 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-1712 1 Hcltech 1 Domino 2024-11-21 4.3 MEDIUM 5.9 MEDIUM
"A vulnerability in the TLS protocol implementation of the Domino server could allow an unauthenticated, remote attacker to access sensitive information, aka a Return of Bleichenbacher's Oracle Threat (ROBOT) attack. An attacker could iteratively query a server running a vulnerable TLS stack implementation to perform cryptanalytic operations that may allow decryption of previously captured TLS sessions."
CVE-2024-30106 1 Hcltech 1 Connections 2024-11-08 N/A 3.5 LOW
HCL Connections is vulnerable to an information disclosure vulnerability, due to an IBM WebSphere Application Server error, which could allow a user to obtain sensitive information they are not entitled to due to the improper handling of request data.
CVE-2023-50355 1 Hcltech 1 Sametime 2024-10-31 N/A 3.6 LOW
HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack.
CVE-2024-30117 1 Hcltech 1 Bigfix Platform 2024-10-17 N/A 2.5 LOW
A dynamic search for a prerequisite library could allow the possibility for an attacker to replace the correct file under some circumstances.
CVE-2024-30118 1 Hcltech 1 Connections 2024-10-10 N/A 3.5 LOW
HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to because of improperly handling the request data.
CVE-2024-23586 1 Hcltech 2 Domino, Hcl Nomad 2024-10-07 N/A 5.3 MEDIUM
HCL Nomad is susceptible to an insufficient session expiration vulnerability.   Under certain circumstances, an unauthenticated attacker could obtain old session information.