← Back

CVE-2024-23558

nvd nist
Published: Apr 15, 2024Modified: Apr 11, 2025

JSON object

Loading...
6.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Exploitability: 2.8 / Impact: 3.4
Source: NVD

Description

HCL DevOps Deploy / HCL Launch does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.

Affected (5)

2 products
Hcl Devops Deploy
Hcl Launch
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
From 8.0.0.0 to 8.0.1
Hcltechsw
From 7.0.0.0 to 7.0.5.21
From 7.1.0.0 to 7.1.2.17
From 7.2.0.0 to 7.2.3.10
From 7.3.0.0 to 7.3.2.5

References (2)

Timeline

No history available yet.