3.7
CVE-2026-56587
- EPSS 0.16%
- Veröffentlicht 21.07.2026 14:36:53
- Zuletzt bearbeitet 30.07.2026 13:10:07
- Erkennungen
HCL IEM was affected with Strict transport security not enforced
HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and compromise secure communications.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hcltech ≫ Intelliops Event Management Version 1.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.16% | 0.052 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@hcl.com | 3.7 | 2.2 | 1.4 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
|
CWE-523 Unprotected Transport of Credentials
Login pages do not use adequate measures to protect the user name and password while they are in transit from the client to the server.
https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132378