Vulnerabilities > Hcltech > Connections > 5.5

DATE CVE VULNERABILITY TITLE RISK
2020-05-01 CVE-2019-4209 Open Redirect vulnerability in Hcltech Connections 5.5/6.0/6.5
HCL Connections v5.5, v6.0, and v6.5 contains an open redirect vulnerability which could be exploited by an attacker to conduct phishing attacks.
network
hcltech CWE-601
5.8
2020-04-22 CVE-2020-4085 Information Exposure vulnerability in Hcltech Connections 5.5/6.0/6.5
"HCL Connections is vulnerable to possible information leakage and could disclose sensitive information via stack trace to a local user."
network
low complexity
hcltech CWE-200
4.0
2020-03-09 CVE-2020-4084 Cross-site Scripting vulnerability in Hcltech Connections 5.5/6.0/6.5
HCL Connections v5.5, v6.0, and v6.5 are vulnerable to cross-site scripting.
network
hcltech CWE-79
3.5
2020-03-05 CVE-2020-4082 Cross-site Scripting vulnerability in Hcltech Connections 5.5
The HCL Connections 5.5 help system is vulnerable to cross-site scripting, caused by improper validation of user-supplied input.
network
hcltech CWE-79
3.5