HCL Technologies XPages是印度HCL Technologies公司的一种由 Domino 服务器或 Notes 客户端解释的 XML ,并在 web 浏览器或 Notes 客户端中呈现。 HCL Technologies XPages 存在安全漏洞,该漏洞源于存在跨站请求伪造(CSRF),未经身份验证的攻击者可以利用此漏洞代表登录用户在应用程序中执行操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | HCL Domino | v9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-38656 | 8.6 HIGH | HCL Commerce, when using Elasticsearch, could be affected by a denial of service vulnerabi |
| CVE-2022-38661 | 6.2 MEDIUM | HCL Workload Automation is affected by a vulnerability in Jlog component of the Master Dom |
| CVE-2022-38654 | 5.5 MEDIUM | HCL Domino is susceptible to an information disclosure vulnerability |
No comments yet