HCL Technologies Notes是印度HCL Technologies公司的一款电子邮件软件。该软件支持访问电子邮件、日历和联系人等。 HCL Technologies Notes 11.0 - 11.0.1 FP4 客户端存在安全漏洞,该漏洞源于在重新启动时容易受到群聊加载脚本的攻击,会导致在另一个聊天客户端上执行远程代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | HCL Notes | 11.0 - 11.0.1 FP4 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-27764 | 7.4 HIGH | HCL BigFix WebUI Cookie missing attributes |
| CVE-2021-27765 | 6.7 MEDIUM | HCL BigFix Platform Server API is affected by Privilege Escalation Vulnerability |
| CVE-2021-27766 | 6.7 MEDIUM | HCL BigFix Platform Client is affected by a Privilege Escalation Vulnerability |
| CVE-2021-27767 | 6.7 MEDIUM | HCL BigFix Platform Console is affected by a Privilege Escalation Vulnerability |
| CVE-2021-27761 | 4.8 MEDIUM | HCL BigFix Platform is affected by weak web transport security |
| CVE-2021-27762 | 4.7 MEDIUM | HCL BigFix Platform is affected by misconfigured security-related HTTP headers |
| CVE-2021-27751 | 4.4 MEDIUM | HCL Commerce is affected by an Insufficient Session Expiration vulnerability. |
| CVE-2021-27758 | 4.3 MEDIUM | HCL BigFix Platform 跨站请求伪造漏洞 |
| CVE-2021-27759 | 2.3 LOW | HCL Technologies BigFix Platform 数据伪造问题漏洞 |
No comments yet