Weak SSL/TLS Protocol Vulnerability in HCL iControl
CVE-2026-56609

4.8MEDIUM

Key Information:

Vendor
CVE Published:
3 August 2026

What is CVE-2026-56609?

The HCL iControl application is susceptible to a vulnerability stemming from its reliance on outdated SSL/TLS protocols, specifically TLS 1.0 and 1.1. These older versions are known for their weak security measures, leaving the application open to various types of attacks that can compromise sensitive data during transmission. It is crucial for users to upgrade to more secure protocols to ensure the integrity and confidentiality of their data.

Affected Version(s)

HCL iControl v3.2.0

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.