No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 23 Jul 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hclsoftware
Hclsoftware aftermarket Epc |
|
| Vendors & Products |
Hclsoftware
Hclsoftware aftermarket Epc |
Wed, 22 Jul 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Sensitive Data Exposure via GET Parameters in HCL Aftermarket EPC |
Fri, 17 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 17 Jul 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows application to pass sensitive data via URL parameters during normal usage. Data passed in this manner can be exposed because it may end up stored in unintended locations, including server logs, local browser history and proxy logs. | |
| Weaknesses | CWE-804 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-07-17T13:54:13.031Z
Reserved: 2024-01-18T07:29:56.729Z
Link: CVE-2024-23567
Updated: 2026-07-17T13:54:08.575Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-23T22:09:07Z