HCL Compass is vulnerable to lack of file upload security.  An attacker could upload files containing active code that can be executed by the server or by a user's web browser.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published: 2023-10-18T22:51:16.664Z

Updated: 2024-09-13T14:54:58.654Z

Reserved: 2023-07-06T16:11:32.538Z

Link: CVE-2023-37502

cve-icon Vulnrichment

Updated: 2024-08-02T17:16:30.409Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-18T23:15:08.230

Modified: 2023-10-25T10:32:58.407

Link: CVE-2023-37502

cve-icon Redhat

No data.