Feed/CVE-2023-37502
CVE-2023-37502CRITICALCVSS 9.0

CVE-2023-37502

Published Oct 18, 2023·Updated Jun 17, 2026

NVD Description

HCL Compass is vulnerable to lack of file upload security.  An attacker could upload files containing active code that can be executed by the server or by a user's web browser.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free