VYPR

Connections

by HCL Software

CVEs (27)

  • CVE-2024-30118LowOct 9, 2024
    risk 0.23cvss 3.5epss 0.00

    HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to because of improperly handling the request data.

  • CVE-2023-37541LowJun 25, 2024
    risk 0.23cvss 3.5epss 0.00

    HCL Connections contains a broken access control vulnerability that may allow unauthorized user to update data in certain scenarios.

  • CVE-2024-30107LowApr 18, 2024
    risk 0.23cvss 3.5epss 0.00

    HCL Connections contains a broken access control vulnerability that may expose sensitive information to unauthorized users in certain scenarios.

  • CVE-2024-23557LowApr 18, 2024
    risk 0.23cvss 3.5epss 0.00

    HCL Connections contains a user enumeration vulnerability. Certain actions could allow an attacker to determine if the user is valid or not, leading to a possible brute force attack.

  • CVE-2023-28022LowDec 15, 2023
    risk 0.23cvss 3.5epss 0.01

    HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive information they are not entitled to, caused by improper handling of request data.

  • CVE-2026-56538LowJul 27, 2026
    risk 0.00cvss 3.5epss 0.00

    An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.

  • CVE-2026-56537LowJul 27, 2026
    risk 0.00cvss 3.5epss 0.00

    HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they are not entitled to, caused by improper handling of request data.they are not entitled to, caused by improper handling of request data.

Page 2 of 2