4.1
CVE-2024-30146
- EPSS 0.15%
- Veröffentlicht 30.04.2025 21:16:31
- Zuletzt bearbeitet 31.12.2025 01:06:39
- Quelle psirt@hcl.com
- CVE-Watchlists
- Unerledigt
HCL Domino Leap is affected by improper access control
Improper access control of endpoint in HCL Domino Leap allows certain admin users to import applications from the server's filesystem.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hcltech ≫ Domino Leap Version >= 1.1.3 < 1.1.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.15% | 0.356 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 2.7 | 1.2 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
|
| psirt@hcl.com | 4.1 | 0.7 | 3.4 |
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L
|
CWE-284 Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.