Vulnerabilities > Hcltechsw > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-21 CVE-2023-45703 Unspecified vulnerability in Hcltechsw HCL Launch
HCL Launch may mishandle input validation of an uploaded archive file leading to a denial of service due to resource exhaustion.
network
low complexity
hcltechsw
7.5
2022-12-12 CVE-2022-38661 Unspecified vulnerability in Hcltechsw HCL Workload Automation
HCL Workload Automation could allow a local user to overwrite key system files which would cause the system to crash.
local
low complexity
hcltechsw
7.1
2021-02-04 CVE-2020-14246 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hcltechsw Onetest Performance 10.0.0/10.1.0/9.5.0
HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak.
network
low complexity
hcltechsw CWE-327
7.5
2021-01-12 CVE-2020-14274 Unspecified vulnerability in Hcltechsw HCL Commerce
Information disclosure vulnerability in HCL Commerce 9.0.1.9 through 9.0.1.14 and 9.1 through 9.1.4 could allow a remote attacker to obtain user personal data via unknown vectors.
network
low complexity
hcltechsw
7.5
2020-12-22 CVE-2020-14231 Out-of-bounds Write vulnerability in Hcltechsw HCL Client Application Access 9.0
A vulnerability in the input parameter handling of HCL Client Application Access v9 could potentially be exploited by an authenticated attacker resulting in a stack buffer overflow.
network
low complexity
hcltechsw CWE-787
8.8