Home
MEDIUM: 5.4 CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:LDefault status
unaffected
2.1.0
affected
Description
HCL AION is affected by a vulnerability where adequate protections against brute-force attempts are not enforced. This may allow repeated authentication attempts, potentially leading to unauthorized access or account compromise under certain conditions.
Problem types
CWE-307: Improper Restriction of Excessive Authentication Attempts
Product status
2.1.0
References
support.hcl-software.com/...rticle&sysparm_article=KB0130636