HCL Traveler is affected by an internal path disclosure in a Windows application when the application inadvertently reveals internal file paths, in error messages, debug logs, or responses to user requests.
Advisories
Source ID Title
EUVD EUVD EUVD-2025-9726 HCL Traveler is affected by an internal path disclosure in a Windows application when the application inadvertently reveals internal file paths, in error messages, debug logs, or responses to user requests.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 10 Oct 2025 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech traveler
CPEs cpe:2.3:a:hcltech:traveler:*:*:*:*:*:*:*:*
Vendors & Products Hcltech
Hcltech traveler

Fri, 04 Apr 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 03 Apr 2025 22:15:00 +0000

Type Values Removed Values Added
Description HCL Traveler is affected by an internal path disclosure in a Windows application when the application inadvertently reveals internal file paths, in error messages, debug logs, or responses to user requests.
Title An internal path disclosure vulnerability affects HCL Traveler
Weaknesses CWE-497
References
Metrics cvssV3_1

{'score': 4.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2025-04-04T18:32:44.020Z

Reserved: 2025-01-06T16:01:35.708Z

Link: CVE-2025-0278

cve-icon Vulnrichment

Updated: 2025-04-04T18:32:39.191Z

cve-icon NVD

Status : Analyzed

Published: 2025-04-03T22:15:16.563

Modified: 2025-10-10T16:47:30.307

Link: CVE-2025-0278

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.