Weak Password Policy in HCL MyCloud
CVE-2026-56577

3.1LOW

Key Information:

Status
Vendor
CVE Published:
21 July 2026

What is CVE-2026-56577?

HCL MyCloud is susceptible to vulnerabilities due to a weak password policy that permits easy brute-force attempts and credential-based attacks. This flaw can significantly increase the risk of unauthorized account access, posing a threat to users and their sensitive data. Organizations using HCL MyCloud are encouraged to immediately review and strengthen their password policies to safeguard against potential intrusions.

Affected Version(s)

MyCloud 10.8.2

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.