Vulnerability Database

309,130

Total vulnerabilities in the database

CVE-2024-42188

HCL Connections is vulnerable to a broken access control vulnerability that may allow an unauthorized user to update data in certain scenarios.

  • Published: Nov 14, 2024
  • Updated: Nov 4, 2025
  • CVE: CVE-2024-42188
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 3.7
  • AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N

CWEs:

Software From Fixed in
hcltech / connections 7.0 7.0.x
hcltech / connections 8.0 8.0.x
hcltech / connections 8.0-cumulative_release1 8.0-cumulative_release1.x
hcltech / connections 8.0-cumulative_release2 8.0-cumulative_release2.x
hcltech / connections 8.0-cumulative_release3 8.0-cumulative_release3.x
hcltech / connections 8.0-cumulative_release4 8.0-cumulative_release4.x
hcltech / connections 8.0-cumulative_release5 8.0-cumulative_release5.x
hcltech / connections 8.0-cumulative_release6 8.0-cumulative_release6.x
hcltech / connections 8.0-cumulative_release7 8.0-cumulative_release7.x