Information Disclosure in HCL Connections Software by HCL Technologies
CVE-2024-42209
3.5LOW
What is CVE-2024-42209?
HCL Connections experiences an information disclosure issue that arises from improper handling of request data. This vulnerability permits unauthorized users to access sensitive information, potentially compromising data confidentiality and security. Organizations using affected versions of HCL Connections should apply the necessary updates to mitigate this risk and protect sensitive user information.
Affected Version(s)
Connections 7.0, 8.0
References
CVSS V3.1
Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
