VYPR

Workload Automation

by HCLTech

CVEs (2)

  • CVE-2023-28008HigApr 26, 2023
    risk 0.46cvss 7.1epss 0.01

    HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.

  • CVE-2023-28009MedApr 26, 2023
    risk 0.42cvss 6.5epss 0.01

    HCL Workload Automation is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.