Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Hcl_digital_experience
(Hcltech)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2020-06-11 | CVE-2020-4101 | "HCL Digital Experience is susceptible to Server Side Request Forgery." | Hcl_digital_experience | 9.8 | ||
2020-11-05 | CVE-2020-14222 | HCL Digital Experience 8.5, 9.0, 9.5 is susceptible to cross site scripting (XSS). One subcomponent is vulnerable to reflected XSS. In reflected XSS, an attacker must induce a victim to click on a crafted URL from some delivery mechanism (email, other web site). | Hcl_digital_experience | 6.1 | ||
2022-09-22 | CVE-2021-27774 | User input included in error response, which could be used in a phishing attack. | Hcl_digital_experience | 5.4 | ||
2022-12-19 | CVE-2022-38662 | In HCL Digital Experience, URLs can be constructed to redirect users to untrusted sites. | Hcl_digital_experience | 6.1 |