Information Disclosure in HCL Connections Software by HCL Technologies
CVE-2024-42209

3.5LOW

Key Information:

Vendor
CVE Published:
17 July 2025

What is CVE-2024-42209?

HCL Connections experiences an information disclosure issue that arises from improper handling of request data. This vulnerability permits unauthorized users to access sensitive information, potentially compromising data confidentiality and security. Organizations using affected versions of HCL Connections should apply the necessary updates to mitigate this risk and protect sensitive user information.

Affected Version(s)

Connections 7.0, 8.0

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2024-42209 : Information Disclosure in HCL Connections Software by HCL Technologies