HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this weakness to gain access to sensitive information, modify data, or other impacts.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NHcltech Hcl Sx
APPHcltech21
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2024-30155MEDIUM5.5same product
HCL SX does not set the secure attribute on authorization tokens or session cookies. Attackers may potentially...
CVE-2024-30154MEDIUM5.3same product
HCL SX is vulnerable to cross-site request forgery vulnerability which could allow an attacker to execute mali...
CVE-2025-62319CRITICAL9.8PL ✓same vendor
Boolean-Based SQL Injection umożliwiający wstrzyknięcie dowolnego SQL
CVE-2023-37502CRITICAL9.0PL ✓same vendor
HCL Compass — niebezpieczne przesyłanie plików umożliwiające RCE
CVE-2023-37538CRITICAL9.3PL ✓same vendor
Reflected XSS w HCL Digital Experience — wykonanie kodu w przeglądarce ofiary