Vulnerability Database

309,130

Total vulnerabilities in the database

CVE-2023-37541

HCL Connections contains a broken access control vulnerability that may allow unauthorized user to update data in certain scenarios.

  • Published: Jun 25, 2024
  • Updated: Nov 4, 2025
  • CVE: CVE-2023-37541
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 3.5
  • AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N

No CWE or OWASP classifications available.

Software From Fixed in
hcltech / connections 7.0 7.0.x
hcltech / connections 8.0 8.0.x
hcltech / connections 8.0-cumulative_release1 8.0-cumulative_release1.x
hcltech / connections 8.0-cumulative_release2 8.0-cumulative_release2.x
hcltech / connections 8.0-cumulative_release3 8.0-cumulative_release3.x
hcltech / connections 8.0-cumulative_release4 8.0-cumulative_release4.x
hcltech / connections 8.0-cumulative_release5 8.0-cumulative_release5.x
hcltech / connections 8.0-cumulative_release6 8.0-cumulative_release6.x
hcltech / connections 8.0-cumulative_release7 8.0-cumulative_release7.x
hcltech / connections 8.0-cumulative_release8 8.0-cumulative_release8.x
hcltech / connections 8.0-cumulative_release9 8.0-cumulative_release9.x