Description
HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that can be executed by the server or by a user's web browser.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41389 | HCL Compass is vulnerable to lack of file upload security. An attacker could upload files containing active code that can be executed by the server or by a user's web browser. |
References
History
No history.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-09-13T14:54:58.654Z
Reserved: 2023-07-06T16:11:32.538Z
Link: CVE-2023-37502
Updated: 2024-08-02T17:16:30.409Z
Status : Modified
Published: 2023-10-18T23:15:08.230
Modified: 2024-11-21T08:11:50.680
Link: CVE-2023-37502
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD