← Back

Hcl

hcl

4 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Aion
aion

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hcl
1Aion
Mar 27, 2026
Mar 16, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
HCL AION is affected by a vulnerability where offering images are not digitally signed. Lack of image signing may allow the use of unverified or tampered images, potentially leading to security risks such as integrity co...Show more
HCL AION is affected by a vulnerability where offering images are not digitally signed. Lack of image signing may allow the use of unverified or tampered images, potentially leading to security risks such as integrity compromise or unintended behavior in the systemShow less
1Hcl
1Aion
Mar 27, 2026
Mar 16, 2026
N/A· v4
7.2 HIGH· v3
N/A· v2
HCL AION is affected by a vulnerability where generated containers may execute binaries with root-level privileges. Running containers with root privileges may increase the potential security risk, as it grants elevated...Show more
HCL AION is affected by a vulnerability where generated containers may execute binaries with root-level privileges. Running containers with root privileges may increase the potential security risk, as it grants elevated permissions within the container environment. Aligning container configurations with security best practices requires minimizing privileges and avoiding root-level execution wherever possible.Show less
1Hcl
1Aion
Mar 27, 2026
Mar 16, 2026
N/A· v4
7.3 HIGH· v3
N/A· v2
HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to uni...Show more
HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to unintended database interactions or limited information exposure under specific conditions.Show less
1Hcl
1Domino Appdev Pack
Jan 17, 2025
May 23, 2023
N/A· v4
5.3 MEDIUM· v3
N/A· v2
The HCL Domino AppDev Pack IAM service is susceptible to a User Account Enumeration vulnerability.   During a failed login attempt a difference in messages could allow an attacker to determine if the user is valid or not...Show more
The HCL Domino AppDev Pack IAM service is susceptible to a User Account Enumeration vulnerability.   During a failed login attempt a difference in messages could allow an attacker to determine if the user is valid or not.  The attacker could use this information to focus a brute force attack on valid users. Show less