Vulnerability in HCL MyCloud Due to Insecure IIS Server Configuration
CVE-2026-56580

2.2LOW

Key Information:

Status
Vendor
CVE Published:
21 July 2026

What is CVE-2026-56580?

HCL MyCloud has been identified as vulnerable due to the use of an IIS Server that is not securely configured. This vulnerability allows potential attackers to exploit weaknesses that have been publicly disclosed, leading to a risk of system compromise. Organizations using this software should assess their configurations and implement necessary updates to safeguard against potential exploitation.

Affected Version(s)

MyCloud 10.8.2

References

CVSS V3.1

Score:
2.2
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.