8.1
CVSSv3

CVE-2023-28008

Published: 26/04/2023 Updated: 05/05/2023
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

HCL Workload Automation 9.4, 9.5, and 10.1 are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hcltech workload automation 9.5.0

hcltech workload automation 10.1.0

hcltech workload automation 9.4.0