Unsafe File Upload Vulnerability in HCL Domino Volt
CVE-2022-27562

4.6MEDIUM

Key Information:

Vendor
CVE Published:
30 April 2025

What is CVE-2022-27562?

An improper file type filtering feature in HCL Domino Volt allows the upload of .html files, which can contain malicious JavaScript. This can lead to the execution of unsafe scripts within deployed applications, potentially allowing attackers to manipulate application behavior or access sensitive information. It is essential for users to implement stricter file type validation and security practices to mitigate such risks.

Affected Version(s)

HCL Domino Volt 1.0 - 1.0.5

References

CVSS V3.1

Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2022-27562 : Unsafe File Upload Vulnerability in HCL Domino Volt