Vulnerabilities > Hcltech > High

DATE CVE VULNERABILITY TITLE RISK
2022-12-19 CVE-2022-44753 Out-of-bounds Write vulnerability in Hcltech Notes 10.0.1/9.0.1
HCL Notes is susceptible to a stack based buffer overflow vulnerability in wp6sr.dll in Micro Focus KeyView.
local
low complexity
hcltech CWE-787
7.8
2022-12-19 CVE-2022-44754 Out-of-bounds Write vulnerability in Hcltech Domino 9.0/9.0.1
HCL Domino is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView.
local
low complexity
hcltech CWE-787
7.8
2022-12-19 CVE-2022-44755 Out-of-bounds Write vulnerability in Hcltech Notes 10.0.1/9.0.1
HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView.
local
low complexity
hcltech CWE-787
7.8
2022-11-04 CVE-2022-38660 Cross-Site Request Forgery (CSRF) vulnerability in Hcltech Domino 9.0/9.0.1
HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability.
network
low complexity
hcltech CWE-352
8.8
2022-11-01 CVE-2020-4099 Inadequate Encryption Strength vulnerability in Hcltech Verse 12.0.9
The application was signed using a key length less than or equal to 1024 bits, making it potentially vulnerable to forged digital signatures.
network
low complexity
hcltech CWE-326
7.5
2022-10-31 CVE-2021-27784 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hcltech HCL Launch Container Image 7.1.0.1
The provided HCL Launch Container images contain non-unique HTTPS certificates and a database encryption key.
network
low complexity
hcltech CWE-327
7.5
2022-08-30 CVE-2022-27563 Improper Check for Unusual or Exceptional Conditions vulnerability in Hcltech Versionvault Express 2.0.1/2.1.0
An unauthenticated user can overload a part of HCL VersionVault Express and cause a denial of service.
network
low complexity
hcltech CWE-754
7.5
2022-08-29 CVE-2022-27547 Open Redirect vulnerability in Hcltech Domino and HCL Inotes
HCL iNotes is susceptible to a link to non-existent domain vulnerability.
network
low complexity
hcltech CWE-601
7.4
2022-08-29 CVE-2022-27558 Weak Password Requirements vulnerability in Hcltech Domino and HCL Inotes
HCL iNotes is susceptible to a Broken Password Strength Checks vulnerability.
network
low complexity
hcltech CWE-521
7.5
2022-05-19 CVE-2020-4107 Unspecified vulnerability in Hcltech Domino 10.0/11.0/9.0
HCL Domino is affected by an Insufficient Access Control vulnerability.
local
low complexity
hcltech
7.8