Vulnerability index

Browse CVEs

42 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Hcl Launch MEDIUM 6.5
CVE-2022-27551

HCL Launch could allow an authenticated user to obtain sensitive information in some instances due to improper security checking.

Fix: 7.0.5.12 / 7.1.2.8+
Fix from $1,600 2022-08-03
Hcl Commerce MEDIUM 5.0
CVE-2021-27785

HCL Commerce's Remote Store server could allow a local attacker to obtain sensitive personal information. The vulnerability requires the victim to fi…

Fix: after 9.1.10
Fix from $1,600 2022-07-30
Hcl Launch MEDIUM 5.5
CVE-2022-27548

HCL Launch stores user credentials in plain clear text which can be read by a local user.

Mitigation only
Fix from $1,600 2022-07-06
Hcl Launch MEDIUM 5.5
CVE-2022-27549

HCL Launch may store certain data for recurring activities in a plain text format.

Mitigation only
Fix from $1,600 2022-07-06
Connections MEDIUM 5.4
CVE-2021-27746

"HCL Connections Security Update for Reflected Cross-Site Scripting (XSS) Vulnerability"

Mitigation only
Fix from $1,600 2021-10-21
Hcl Commerce CRITICAL 9.1
CVE-2021-27741

" Security vulnerability in HCL Commerce Management Center allowing XML external entity (XXE) injection"

Fix: after 9.1.5
Fix from $2,300 2021-08-13
Onetest Performance CRITICAL 9.8
CVE-2020-14245

HCL OneTest UI V9.5, V10.0, and V10.1 does not perform authentication for functionality that either requires a provable user identity or consumes a s…

Mitigation only
Fix from $2,300 2021-02-04
Onetest Performance HIGH 7.5
CVE-2020-14246

HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potentially decode the encoded crede…

Mitigation only
Fix from $1,950 2021-02-04
Onetest Performance MEDIUM 6.5
CVE-2020-14247

HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid sessio…

Mitigation only
Fix from $1,600 2021-02-04
Hcl Commerce CRITICAL 9.8
CVE-2020-14275

Security vulnerability in HCL Commerce 9.0.0.5 through 9.0.0.13, 9.0.1.0 through 9.0.1.14 and 9.1 through 9.1.4 could allow denial of service, disclo…

Fix: after 9.1.4.0
Fix from $2,300 2021-01-12
Hcl Commerce HIGH 7.5
CVE-2020-14274

Information disclosure vulnerability in HCL Commerce 9.0.1.9 through 9.0.1.14 and 9.1 through 9.1.4 could allow a remote attacker to obtain user pers…

Fix: after 9.1.4.0
Fix from $1,950 2021-01-12
Hcl Client Application Access HIGH 8.8
CVE-2020-14231

A vulnerability in the input parameter handling of HCL Client Application Access v9 could potentially be exploited by an authenticated attacker resul…

Mitigation only
Fix from $1,950 2020-12-22