CVE-2024-23578

HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin resource sharing (CORS) policy for this request that allows access from any domain (*-Wildcard).
Configurations

No configuration.

History

17 Jul 2026, 14:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-07-17 14:17

Updated : 2026-07-17 17:56


NVD link : CVE-2024-23578

Mitre link : CVE-2024-23578

CVE.ORG link : CVE-2024-23578


JSON object : View

Products Affected

No product.

CWE
CWE-942

Permissive Cross-domain Policy with Untrusted Domains