5.3
CVE-2023-45720
- EPSS 0.04%
- Veröffentlicht 24.04.2025 16:25:16
- Zuletzt bearbeitet 17.11.2025 21:47:36
- Quelle psirt@hcl.com
- CVE-Watchlists
- Unerledigt
Insufficient default configuration in HCL Leap allows anonymous access to directory information.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.04% | 0.118 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@hcl.com | 5.3 | 3.9 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-359 Exposure of Private Personal Information to an Unauthorized Actor
The product does not properly prevent a person's private, personal information from being accessed by actors who either (1) are not explicitly authorized to access the information or (2) do not have the implicit consent of the person about whom the information is collected.