Vulnerabilities > Hcltech > Connections > 5.5

DATE CVE VULNERABILITY TITLE RISK
2020-05-01 CVE-2019-4209 Open Redirect vulnerability in Hcltech Connections 5.5/6.0/6.5
HCL Connections v5.5, v6.0, and v6.5 contains an open redirect vulnerability which could be exploited by an attacker to conduct phishing attacks.
network
low complexity
hcltech CWE-601
6.1
2020-04-22 CVE-2020-4085 Information Exposure Through an Error Message vulnerability in Hcltech Connections 5.5/6.0/6.5
"HCL Connections is vulnerable to possible information leakage and could disclose sensitive information via stack trace to a local user."
network
low complexity
hcltech CWE-209
6.5
2020-03-09 CVE-2020-4084 Cross-site Scripting vulnerability in Hcltech Connections 5.5/6.0/6.5
HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting.
network
low complexity
hcltech CWE-79
5.4
2020-03-05 CVE-2020-4082 Cross-site Scripting vulnerability in Hcltech Connections 5.5
The HCL Connections 5.5 help system is vulnerable to cross-site scripting, caused by improper validation of user-supplied input.
network
low complexity
hcltech CWE-79
5.4