← Back

CVE-2022-42452

nvd nist
Published: Apr 2, 2023Modified: Feb 12, 2025

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

HCL Launch is vulnerable to HTML injection.  HTML code is stored and included without being sanitized. This can lead to further attacks such as XSS and Open Redirections.

Affected (5)

1 product
Hcl Launch
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Hcltechsw
From 6.2.0.0 to 6.2.7.18
From 7.0.5.0 to 7.0.5.13
From 7.1.0.0 to 7.1.2.9
From 7.2.0.0 to 7.2.3.2
Version 7.3.0.0

References (2)

Timeline

No history available yet.