8.8
CVSSv3

CVE-2023-37502

Published: 18/10/2023 Updated: 25/10/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

HCL Compass is vulnerable to lack of file upload security.  An attacker could upload files containing active code that can be executed by the server or by a user's web browser.

Vulnerable Product Search on Vulmon Subscribe to Product

hcltech hcl compass

hcltech hcl compass 2.1.0