Home
LOW: 3.7 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:NDefault status
unaffected
4.0.0
affected
Description
HCL iControl was affected by Missing Security Headers vulnerability. which lead to cross-site scripting (XSS) attacks by enabling the built-in XSS filtering mechanisms of modern web browsers.
Problem types
CWE-693 CWE-693: Protection Mechanism Failure
Product status
4.0.0
References
support.hcl-software.com/...rticle&sysparm_article=KB0131041