CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
HCL IEM is affected by a cookie attribute not set vulnerability due to inconsistency of certain security-related configurations which could increase exposure to potential vulnerabilities. |
1Hcltech 1Intelliops Event Management Jun 17, 2026 Jul 25, 2025 N/A· v4 4.8 MEDIUM· v3 N/A· v2 HCL IEM is affected by a password in cleartext vulnerability. Sensitive information is transmitted without adequate protection, potentially exposing it to unauthorized access during transit. |
1Hcltech 1Intelliops Event Management Jun 17, 2026 Jul 25, 2025 N/A· v4 5.7 MEDIUM· v3 N/A· v2 HCL IEM is affected by a concurrent login vulnerability. The application allows multiple concurrent sessions using the same user credentials, which may introduce security risks. |
1Hcltech 1Intelliops Event Management Jun 17, 2026 Jul 25, 2025 N/A· v4 4.9 MEDIUM· v3 N/A· v2 HCL IEM is affected by an authorization token sent in cookie vulnerability. A token used for authentication and authorization is being handled in a manner that may increase its exposure to security risks. |
1Hcltech 1Intelliops Event Management Jun 17, 2026 Jul 25, 2025 N/A· v4 5.9 MEDIUM· v3 N/A· v2 HCL IEM is affected by an improper invalidation of access or JWT token vulnerability. A token was not invalidated which may allow attackers to access sensitive data without authorization. |