Unsafe File Upload Vulnerability in HCL Domino Volt
CVE-2022-27562
4.6MEDIUM
What is CVE-2022-27562?
An improper file type filtering feature in HCL Domino Volt allows the upload of .html files, which can contain malicious JavaScript. This can lead to the execution of unsafe scripts within deployed applications, potentially allowing attackers to manipulate application behavior or access sensitive information. It is essential for users to implement stricter file type validation and security practices to mitigate such risks.
Affected Version(s)
HCL Domino Volt 1.0 - 1.0.5