Home
MEDIUM: 4.4 CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:NDefault status
unaffected
<= 2.0.2
affected
Description
HCL Connections Docs is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute arbitrary code. This may lead to credentials disclosure and possibly launch additional attacks.
Product status
<= 2.0.2
References
support.hcltechsw.com/...b_article&sysparm_article=KB0108427
support.hcltechsw.com/...b_article&sysparm_article=KB0108427