« Volver al listado

Hcltech

Hcltech Appscan: vulnerabilidades y CVE

Hcltech Appscan tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE8
Últimos 12 meses0
Críticas2
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2019-4326Alta (7.5)1.1%—6 oct 2020
"HCL AppScan Enterprise security rules update administration section of the web application console is missing HTTP Strict-Transport-Security Header."
CVE-2019-4325Media (5.3)0.54%—6 oct 2020
"HCL AppScan Enterprise makes use of broken or risky cryptographic algorithm to store REST API user details."
CVE-2019-4324Media (6.1)0.65%—7 jul 2020
"HCL AppScan Enterprise is susceptible to Cross-Site Scripting while importing a specially crafted test policy."
CVE-2019-4323Media (4.3)0.75%—7 jul 2020
"HCL AppScan Enterprise advisory API documentation is susceptible to clickjacking, which could allow an attacker to embed the contents of untrusted web pages in a frame."
CVE-2019-4327Alta (7.5)1.0%—21 abr 2020
"HCL AppScan Enterprise uses hard-coded credentials which can be exploited by attackers to get unauthorized access to application's encrypted files."
CVE-2019-4393Crítica (9.8)1.0%—7 abr 2020
HCL AppScan Standard is vulnerable to excessive authorization attempts
CVE-2019-4391Alta (8.2)1.2%—7 abr 2020
HCL AppScan Standard is vulnerable to XML External Entity Injection (XXE) attack when processing XML data
CVE-2019-4392Crítica (9.8)1.4%—14 feb 2020
HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unauthorized access to the system.

Otros productos de Hcltech