CVE-2026-56567

Summary

HCL iControl v4.3.0 was affected by Security Misconfiguration vulnerabilities. It involves the public exposure of internal configuration files due to improper web server or application hardening.

Affected Software

VendorProductVersion RangeStatus
HCL SoftwareHCL iControlv4.4.0 and v4.3.0affected

Weaknesses

  • CWE-15: CWE-15 External Control of System or Configuration Setting

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References