CVE-2023-37541

HCL Connections contains a broken access control vulnerability that may allow unauthorized user to update data in certain scenarios.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hcltech:connections:7.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:-:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release1:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release2:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release3:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release4:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release5:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release6:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release7:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release8:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release9:*:*:*:*:*:*

History

29 Oct 2025, 14:45

Type Values Removed Values Added
References () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119435 - () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119435 - Vendor Advisory
References () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0114156 - () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0114156 - Broken Link
CWE NVD-CWE-noinfo
First Time Hcltech
Hcltech connections
CPE cpe:2.3:a:hcltech:connections:8.0:-:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release4:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release6:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release9:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release1:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release2:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release7:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release3:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release8:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:7.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:connections:8.0:cumulative_release5:*:*:*:*:*:*

26 Feb 2025, 00:15

Type Values Removed Values Added
References
  • () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119435 -

21 Nov 2024, 08:11

Type Values Removed Values Added
Summary
  • (es) HCL Connections contiene una vulnerabilidad de control de acceso rota que puede permitir que usuarios no autorizados actualicen datos en ciertos escenarios.
References () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0114156 - () https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0114156 -

25 Jun 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-25 15:15

Updated : 2025-10-29 14:45


NVD link : CVE-2023-37541

Mitre link : CVE-2023-37541

CVE.ORG link : CVE-2023-37541


JSON object : View

Products Affected

hcltech

  • connections