CVE-2024-23569

Summary

HCL Aftermarket EPC is vulnerable to attack since the server is not configured with “X-XSS-Protection" header

Affected Software

VendorProductVersion RangeStatus
HCLSoftwareAftermarket EPCversion 1.0.0affected

Weaknesses

  • CWE-692: CWE-692: Incomplete Denial of Request to Insecure Resource

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References