HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker could exploit this vulnerability to perform actions in the application on behalf of the logged in user.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-41233 | HCL XPages applications are susceptible to a Cross Site Request Forgery (CSRF) vulnerability. An unauthenticated attacker could exploit this vulnerability to perform actions in the application on behalf of the logged in user. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 02 May 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-05-02T18:32:49.631Z
Reserved: 2022-08-22T16:31:27.395Z
Link: CVE-2022-38660
Updated: 2024-08-03T11:02:14.565Z
Status : Modified
Published: 2022-11-04T20:15:10.363
Modified: 2024-11-21T07:16:53.040
Link: CVE-2022-38660
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD