3.5

CVE-2026-56537

HCL Connections is vulnerable to information disclosure

HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they are not entitled to, caused by improper handling of request data.they are not entitled to, caused by improper handling of request data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hcltech ≫ Connections Version < 8.0
Hcltech ≫ Connections Version 8.0 Update -
Hcltech ≫ Connections Version 8.0 Update cumulative_release1
Hcltech ≫ Connections Version 8.0 Update cumulative_release10
Hcltech ≫ Connections Version 8.0 Update cumulative_release2
Hcltech ≫ Connections Version 8.0 Update cumulative_release3
Hcltech ≫ Connections Version 8.0 Update cumulative_release4
Hcltech ≫ Connections Version 8.0 Update cumulative_release5
Hcltech ≫ Connections Version 8.0 Update cumulative_release6
Hcltech ≫ Connections Version 8.0 Update cumulative_release7
Hcltech ≫ Connections Version 8.0 Update cumulative_release8
Hcltech ≫ Connections Version 8.0 Update cumulative_release9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.052
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
psirt@hcl.com 3.5 2.1 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
CWE-209 Generation of Error Message Containing Sensitive Information

The product generates an error message that includes sensitive information about its environment, users, or associated data.

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132507
Patch
Vendor Advisory