← Back

Hcltech

hcltech

455 CVEs • 102 products

Products (102)

Click to collapse
Toggle
Aion
aion
Connections
connections
Domino
domino
Unica
unica
Sametime
sametime
Dfxanalytics
dfxanalytics
Icontrol
icontrol
Notes
notes
Hcl Leap
hcl_leap
Bigfix Mobile
bigfix_mobile
Domino Leap
domino_leap
Appscan
appscan
Bigfix Webui
bigfix_webui
Hcl Inotes
hcl_inotes
Traveler
traveler
Verse
verse
Devops Plan
devops_plan
Hcl Compass
hcl_compass
Dryice Aex
dryice_aex
Bigfix Saas
bigfix_saas
Mycloud
mycloud
Dfx Server
dfx_server
Devops Loop
devops_loop
Hcl Nomad
hcl_nomad
Hcl Sx
hcl_sx
Hcl Domino
hcl_domino
Hcl Sametime
hcl_sametime
Dragon
dragon
Onetest Server
onetest_server
Commerce
commerce
Myxalytics
myxalytics
Campaign
campaign
Interact
interact
Unica Journey
unica_journey
Unica Plan
unica_plan
Unica Campaign
unica_campaign
Unica Interact
unica_interact

CVEs (455)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hcltech
1Icontrol
Aug 5, 2026
Aug 3, 2026
N/A· v4
6.5 MEDIUM· v3
N/A· v2
HCL iControl is affected by Weak SSL/TLS Version Supported vulnerability. It was observed that the application was using weak TLS versions such as TLS 1.0 and 1.1. These outdated protocols lack modern security features,...Show more
HCL iControl is affected by Weak SSL/TLS Version Supported vulnerability. It was observed that the application was using weak TLS versions such as TLS 1.0 and 1.1. These outdated protocols lack modern security features, making them vulnerable to known attacks and exposing sensitive information during data transmission.Show less
1Hcltech
1Icontrol
Aug 5, 2026
Aug 3, 2026
N/A· v4
5.3 MEDIUM· v3
N/A· v2
HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular access controls, allowing users to access or view administrator-level functionalities without appropriat...Show more
HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular access controls, allowing users to access or view administrator-level functionalities without appropriate authorization.Show less
1Hcltech
1Icontrol
Aug 5, 2026
Jul 31, 2026
N/A· v4
5.3 MEDIUM· v3
N/A· v2
HCL iControl was affected by Improper Error Handling vulnerabilities. It involves Out of memory, null pointer exceptions, system call failure, database unavailable, network timeout, and hundreds of other common condition...Show more
HCL iControl was affected by Improper Error Handling vulnerabilities. It involves Out of memory, null pointer exceptions, system call failure, database unavailable, network timeout, and hundreds of other common conditions can cause errors to be generated.Show less
1Hcltech
1Icontrol
Aug 5, 2026
Jul 31, 2026
N/A· v4
5.3 MEDIUM· v3
N/A· v2
HCL iControl was affected by Auto complete Enabled vulnerabilities. It involves expose sensitive information such as: Valid usernames, Email addresses used for login, Account identifiers If the system is accessed from sh...Show more
HCL iControl was affected by Auto complete Enabled vulnerabilities. It involves expose sensitive information such as: Valid usernames, Email addresses used for login, Account identifiers If the system is accessed from shared environments, attackers may enumerate valid usernames through browser suggestions.Show less
1Hcltech
1Icontrol
Aug 5, 2026
Jul 31, 2026
N/A· v4
3.3 LOW· v3
N/A· v2
HCL iControl was affected by Sensitive Data Exposure vulnerabilities. It involves the public exposure of internal configuration files due to improper web server or application hardening.
1Hcltech
1Icontrol
Aug 6, 2026
Jul 31, 2026
N/A· v4
5.3 MEDIUM· v3
N/A· v2
HCL iControl was affected by Information Exposure Through Verbose Client-Side API Error Messages vulnerabilities. It involves application displays raw server/API error messages to users instead of generic error messages...Show more
HCL iControl was affected by Information Exposure Through Verbose Client-Side API Error Messages vulnerabilities. It involves application displays raw server/API error messages to users instead of generic error messages and exposes internal endpoint names, request parameters, error codes, and authentication statusShow less
1Hcltech
1Icontrol
Aug 6, 2026
Jul 31, 2026
N/A· v4
3.3 LOW· v3
N/A· v2
HCL iControl v4.3.0 was affected by Security Misconfiguration vulnerabilities. It involves the public exposure of internal configuration files due to improper web server or application hardening.
1Hcltech
1Connections
Aug 20, 2026
Jul 27, 2026
N/A· v4
3.5 LOW· v3
N/A· v2
An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.
1Hcltech
1Connections
Aug 20, 2026
Jul 27, 2026
N/A· v4
3.5 LOW· v3
N/A· v2
HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they are not entitled to, caused by improper handling of request data.they are not entitled to, caused by i...Show more
HCL Connections is vulnerable to information disclosure which could allow a user to obtain sensitive information they are not entitled to, caused by improper handling of request data.they are not entitled to, caused by improper handling of request data.Show less
1Hcltech
1Dryice Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
3.1 LOW· v3
N/A· v2
HCL MyCloud was affected with Concurrent Login Vulnerability. It may increase the risk of unauthorized access, session hijacking, and account misuse.
1Hcltech
2Dryice Mycloud
Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
3.1 LOW· v3
N/A· v2
HCL MyCloud was affected by the SSL/TLS LUCKY13 Vulnerability. An attacker may exploit this vulnerability to decrypt sensitive information through a TLS/SSL padding oracle attack.
1Hcltech
2Dryice Mycloud
Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
2.6 LOW· v3
N/A· v2
HCL MyCloud was affected with Cookie Attribute Path Not Set. It may increase the risk of unauthorized access to session data or authentication tokens.
1Hcltech
1Dryice Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
2.2 LOW· v3
N/A· v2
HCL MyCloud was affected by Using Components with Known Vulnerability ( IIS Server ). It may allow attackers to exploit publicly disclosed weaknesses and compromise the system.
1Hcltech
2Dryice Mycloud
Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
3.1 LOW· v3
N/A· v2
HCL MyCloud was affected with License Key Revealed in HTTP Response. It may enable attackers to misuse the exposed information and compromise the application's security.
1Hcltech
2Dryice Mycloud
Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
2.2 LOW· v3
N/A· v2
HCL MyCloud was affected by Server Version Disclosure. It may help attackers identify and exploit known vulnerabilities affecting the disclosed software versions.
1Hcltech
1Dryice Mycloud
Aug 3, 2026
Jul 21, 2026
N/A· v4
6.5 MEDIUM· v3
N/A· v2
HCL MyCloud was affected with Weak Password Policy. It may increase the risk of account compromise through brute-force or credential-based attacks.
1Hcltech
1Intelliops Event Management
Jul 30, 2026
Jul 21, 2026
N/A· v4
4.2 MEDIUM· v3
N/A· v2
HCL IEM was affected with X-Content-Type-Options Header Missing. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and intercept sensitive data.
1Hcltech
1Intelliops Event Management
Jul 30, 2026
Jul 21, 2026
N/A· v4
4.3 MEDIUM· v3
N/A· v2
HCL IEM was affected with the Anti Clickjacking XFrame Options Header Missing. It may allow attackers to embed the application in malicious pages and induce unauthorized user actions.
1Hcltech
1Intelliops Event Management
Jul 30, 2026
Jul 21, 2026
N/A· v4
3.7 LOW· v3
N/A· v2
HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and compromise secure communications.
1Hcltech
1Intelliops Event Management
Jul 30, 2026
Jul 21, 2026
N/A· v4
5.3 MEDIUM· v3
N/A· v2
HCL IEM was affected with the Information disclosure nginx server. It may enable attackers to identify outdated software versions and target known vulnerabilities or publicly available exploits.