Hcltech
Hcltech Intelliops Event Management: vulnerabilidades y CVE
Hcltech Intelliops Event Management tiene 9 vulnerabilidades publicadas, 4 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses4
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-56586 | Media (4.2) | 0.20% | — | 21 jul 2026 | HCL IEM was affected with X-Content-Type-Options Header Missing. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and intercept sensitive data. |
| CVE-2026-56585 | Media (4.3) | 0.25% | — | 21 jul 2026 | HCL IEM was affected with the Anti Clickjacking XFrame Options Header Missing. It may allow attackers to embed the application in malicious pages and induce unauthorized user actions. |
| CVE-2026-56587 | Baja (3.7) | 0.24% | — | 21 jul 2026 | HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and compromise secure communications. |
| CVE-2026-56584 | Media (5.3) | 0.29% | — | 21 jul 2026 | HCL IEM was affected with the Information disclosure nginx server. It may enable attackers to identify outdated software versions and target known vulnerabilities or publicly available exploits. |
| CVE-2025-0253 | Baja (2.4) | 0.21% | — | 25 jul 2025 | HCL IEM is affected by a cookie attribute not set vulnerability due to inconsistency of certain security-related configurations which could increase exposure to potential vulnerabilities. |
| CVE-2025-0252 | Media (4.8) | 0.14% | — | 25 jul 2025 | HCL IEM is affected by a password in cleartext vulnerability. Sensitive information is transmitted without adequate protection, potentially exposing it to unauthorized access during transit. |
| CVE-2025-0251 | Media (5.7) | 0.21% | — | 25 jul 2025 | HCL IEM is affected by a concurrent login vulnerability. The application allows multiple concurrent sessions using the same user credentials, which may introduce security risks. |
| CVE-2025-0250 | Media (4.9) | 0.18% | — | 25 jul 2025 | HCL IEM is affected by an authorization token sent in cookie vulnerability. A token used for authentication and authorization is being handled in a manner that may increase its exposure to security risks. |
| CVE-2025-0249 | Media (5.9) | 0.21% | — | 25 jul 2025 | HCL IEM is affected by an improper invalidation of access or JWT token vulnerability. A token was not invalidated which may allow attackers to access sensitive data without authorization. |