MEDIUM🇵🇱 Wersja polska

CVE-2024-30152

CVSS 6.5v3.1pub. 2025-04-25upd. 2025-10-30

HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this weakness to gain access to sensitive information, modify data, or other impacts.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
  • Hcltech Hcl Sx

    APP
    Hcltech
    21
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2024-30155MEDIUM5.5same product

HCL SX does not set the secure attribute on authorization tokens or session cookies. Attackers may potentially...

CVE-2024-30154MEDIUM5.3same product

HCL SX is vulnerable to cross-site request forgery vulnerability which could allow an attacker to execute mali...

CVE-2025-62319CRITICAL9.8PL ✓same vendor

Boolean-Based SQL Injection umożliwiający wstrzyknięcie dowolnego SQL

CVE-2023-37502CRITICAL9.0PL ✓same vendor

HCL Compass — niebezpieczne przesyłanie plików umożliwiające RCE

CVE-2023-37538CRITICAL9.3PL ✓same vendor

Reflected XSS w HCL Digital Experience — wykonanie kodu w przeglądarce ofiary