ZeroHour

CVE-2025-0279

CVSS 3.1
4.3 medium
EPSS
<1%p22
Published
()
Modified
Description

HCL Traveler generates some error messages that provide detailed information about errors and failures, such as internal paths, file names, sensitive tokens, credentials, error codes, or stack traces. Attackers could exploit this information to gain insights into the system's architecture and potentially launch targeted attacks.

Vendors
hcltech
Products
traveler
Weakness
CWE-209
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.