VYPR

Workload Automation

by HCL Software

CVEs (3)

  • CVE-2023-28008HigApr 26, 2023
    risk 0.46cvss 7.1epss 0.01

    HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.

  • CVE-2023-28009MedApr 26, 2023
    risk 0.42cvss 6.5epss 0.01

    HCL Workload Automation is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.

  • CVE-2022-38661MedDec 12, 2022
    risk 0.40cvss 6.2epss 0.00

    HCL Workload Automation could allow a local user to overwrite key system files which would cause the system to crash.