← Back

CVE-2026-35149

nvd nist
Published: Jul 16, 2026Modified: Jul 21, 2026

JSON object

Loading...
8.2
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
Exploitability: 3.9 / Impact: 4.2
Source: psirt@hcl.com (Secondary)

Description

HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation. An unauthorized user without valid credentials can exploit this flaw by intercepting and altering the server's authentication responses, allowing them to gain unauthorized access to the application without verification.

Affected (1)

Products: Hcltech: Dfx Server
1 product
Dfx Server
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 2.5

Timeline

No history available yet.