Insufficient Default Configuration in HCL Leap Leads to Unauthorized Access
CVE-2023-45720
5.3MEDIUM
What is CVE-2023-45720?
The HCL Leap application is susceptible to unauthorized access due to insufficient default configuration, allowing anonymous users to access sensitive directory information. This vulnerability could lead to exposure of confidential data and increase the risk of further attacks. It is strongly advised that users review their configuration settings to mitigate this risk.
Affected Version(s)
HCL Leap < 9.3.5