Security Advisory

CVE-2024-23578

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-17 13:50:08
Last updated 2026-07-17 15:22:55
Assigner HCL
CVSS score 4.2
State PUBLISHED

Description

HCL Aftermarket EPC is vulnerable to attack as the application implements an HTML5 cross-origin resource sharing (CORS) policy for this request that allows access from any domain (*-Wildcard).