HCL Aftermarket EPC is vulnerable to email flooding as the application does not have a proper mail limitation mechanism at Forget Password functionality. The actor could b e a human or an automated process such as a virus or bot. This could be used to cause a denial of service, compromise program logic or other consequences.
References
Configurations
No configuration.
History
17 Jul 2026, 14:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-17 14:17
Updated : 2026-07-17 17:56
NVD link : CVE-2024-23565
Mitre link : CVE-2024-23565
CVE.ORG link : CVE-2024-23565
JSON object : View
Products Affected
No product.
CWE
CWE-799
Improper Control of Interaction Frequency
