Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3028▼ 62 respecto a la semana anterior
Críticas / altas1422▲ 60 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
3 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (7.5) | 0.32% | — | Hcltech HCL Nomad | 27/9/2024 | 17/6/2026 | HCL Nomad is susceptible to an insufficient session expiration vulnerability. Under certain circumstances, an unauthenticated attacker could obtain old session information. | |
| Modificada | Alta (7.1) | 0.18% | — | Hcltech HCL Nomad | 10/8/2023 | 17/6/2026 | If certain local files are manipulated in a certain manner, the validation to use the cryptographic keys can be circumvented. | |
| Modificada | Media (5.3) | 0.33% | — | Hcltech HCL Nomad | 6/5/2020 | 17/6/2026 | "If port encryption is not enabled on the Domino Server, HCL Nomad on Android and iOS Platforms will communicate in clear text and does not currently have a user interface option to change the setting to request an encrypted communication channel with the Domino server. This can potentially expose sensitive… |