目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

HCLSoftware 厂商漏洞列表 / CVE 中文分析 79

HCLSoftware 厂商相关 79 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

HCLSoftware 提供企业级软件解决方案,涵盖云计算、协作和数字体验等领域。历史漏洞记录显示常见问题包括远程代码执行、跨站脚本请求伪造和权限绕过等。其产品曾因身份验证机制缺陷和配置不当导致多个高危漏洞,影响广泛。安全团队需重点关注其组件更新和权限管理,以防范潜在攻击。

CVE IDタイトルCVSS深刻度公開日
CVE-2024-42214 HCL Aftermarket EPC 跨站脚本漏洞 — Aftermarket EPCCWE-692 5.3 Medium2026-07-17
CVE-2024-23575 HCL Aftermarket EPC 信息泄露漏洞 — Aftermarket EPCCWE-209 5.3 Medium2026-07-17
CVE-2024-23571 HCL Aftermarket EPC 信息泄露漏洞 — Aftermarket EPCCWE-525 4.3 Medium2026-07-17
CVE-2024-23573 HCL Aftermarket EPC 授权问题漏洞 — Aftermarket EPCCWE-425 3.7 Low2026-07-17
CVE-2024-23568 HCL Aftermarket EPC 信息泄露漏洞 — Aftermarket EPCCWE-200 5.3 Medium2026-07-17
CVE-2024-23565 HCL Aftermarket EPC 资源管理错误漏洞 — Aftermarket EPCCWE-799 5.3 Medium2026-07-17
CVE-2024-23566 HCL Aftermarket EPC 授权问题漏洞 — Aftermarket EPCCWE-804 6.5 Medium2026-07-17
CVE-2024-23567 HCL Aftermarket EPC 授权问题漏洞 — Aftermarket EPCCWE-804 4.3 Medium2026-07-17
CVE-2026-21770 HCL Traveler for Microsoft Outlook (HTMO) is susceptible to DLL hijacking — HCL Traveler for Microsoft Outlook (HTMO)CWE-427 6.5 Medium2026-07-17
CVE-2026-35146 HCL DFXServer is affected by an Unencrypted Communication vulnerability. — DFXServerCWE-326 6.3 Medium2026-07-16
CVE-2026-21840 HCL BigFix Platform is affected by a user enumeration vulnerability — HCL BigFix PlatformCWE-208 3.1 Low2026-07-14
CVE-2026-56460 HCL DevOps Deploy / HCL Launch is susceptible to an Insertion of Sensitive Information Into Sent Data vulnerability — HCL DevOps Deploy / HCL LaunchCWE-201 6.5 Medium2026-07-09
CVE-2026-56458 HCL DevOps Deploy is susceptible to a Permissive Cross-domain Security Policy with Untrusted Domains — HCL DevOps DeployCWE-942 5.4 Medium2026-07-09
CVE-2026-56459 HCL DevOps Deploy / HCL Launch is susceptible to sensitive information disclosure — HCL DevOps Deploy / HCL LaunchCWE-532 6.2 Medium2026-07-09
CVE-2026-56457 HCL DevOps Deploy / HCL Launch is susceptible to an exposure of sensitive information — HCL DevOps Deploy / HCL LaunchCWE-532 4.3 Medium2026-06-29
CVE-2025-59868 HCL Traveler for Microsoft Outlook (HTMO) is susceptible to sensitive data exposure — Traveler for Microsoft OutlookCWE-532 5.5 Medium2026-06-27
CVE-2023-37524 HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service — Traveler for Microsoft OutlookCWE-1104 7.7 High2026-06-27
CVE-2024-23581 HCL Traveler for Microsoft Outlook (HTMO) is susceptible to an application modification vulnerability — Traveler for Microsoft OutlookCWE-347 6.7 Medium2026-06-26
CVE-2025-15619 HCL Connections is vulnerable to broken access control — ConnectionsCWE-284 3.5 Low2026-06-23
CVE-2026-21768 HCL Verse for Android is susceptible to an injection vulnerability — Verse for AndroidCWE-20 6.3 Medium2026-06-19
CVE-2026-21825 HCL Digital Experience Compose is affected by a reflected cross-site scripting (XSS) vulnerability in the search center — DX ComposeCWE-79 6.1 Medium2026-06-05
CVE-2026-21826 HCL Digital Experience and HCL Digital Experience Compose could be susceptible to Host header injection — Digital Experience & DX ComposeCWE-601 6.1 Medium2026-06-05
CVE-2026-21837 HCL Digital Experience is affected by an OS command injection vulnerability in the Digital Asset Management API — Digital ExperienceCWE-78--2026-06-05
CVE-2025-62338 HCL BigFix Cloud Lifecycle Management is affected by lack of input validation — BigFix Cloud Lifecycle Management 3.3 Low2026-06-04
CVE-2026-21785 HCL BigFix Remote Control Server WebUI is affected by a misconfigured Content Security Policy — BigFix Remote Control ServerCWE-1021 4.0 Medium2026-05-27
CVE-2026-21836 HCL DominoIQ is affected by broken access control — DominoIQCWE-862 6.5 Medium2026-05-20
CVE-2026-21789 HCL Connections is vulnerable to broken access control — ConnectionsCWE-863 4.6 Medium2026-05-18
CVE-2026-21821 HCL BigFix SCM Reporting is affected by vulnerabilities in jQuery — BigFix SCM ReportingCWE-1104 8.3 High2026-05-13
CVE-2025-15634 HCL BigFix WebUI is affected by a missing authorization vulnerability — BigFix WebUICWE-862 4.3 -2026-05-09
CVE-2025-15633 HCL BigFix WebUI is affected by an improper authorization vulnerability — BigFix WebUICWE-863 4.3 -2026-05-09

本页汇总了 HCLSoftware 厂商截至目前公开的全部 79 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。