Product
hcltech hcl compass
4 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-37503
CVE-2023-37504
CVE-2023-37502
CVE-2022-42447
>= 2.0.0 and <= 2.0.3
HCL Compass is vulnerable to insecure password requirements. An attacker could easily guess the password and gain access to user a
>= 2.0.0 and <= 2.0.3
HCL Compass is vulnerable to failure to invalidate sessions. The application does not invalidate authenticated sessions when the l
>= 2.0.0 and <= 2.0.3
HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that can be exe
>= 2.0.0 and <= 2.0.3
HCL Compass is vulnerable to Cross-Origin Resource Sharing (CORS). This vulnerability can allow an unprivileged remote attacker to