ZeroHour

CVE-2024-23558

CVSS 3.1
6.3 medium
EPSS
<1%p23
Published
()
Modified
Description

HCL DevOps Deploy / HCL Launch does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.

Vendors
hcltechsw
Products
hcl devops deploy, hcl launch
Weakness
CWE-290
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.