CWE-804
CVEs classified under CWE-804, newest first.
2 CVEsRSS
CVE-2024-23567Medium· 4.3HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows application to pass sensitive data via URL parameters during normal usage
HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows application to pass sensitive data via URL parameters during normal usage. Data passed in this manner can be exposed because it may end up store…
▾ SunlitEPSS 0.31%via NVD
CVE-2024-23566Medium· 6.5HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented
HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various security issues like brute force , automated attacks & account enumeration
▾ SunlitEPSS 0.27%via NVD