HCL IEM Password in Cleartext Vulnerability

Vulnerability

A vulnerability exists in HCL IEM version 1.2, where sensitive information, including passwords, is transmitted in cleartext without adequate protection. This lack of encryption could expose such information to unauthorized access during transit.

Impact

Exposing sensitive information, such as passwords, in cleartext can lead to unauthorized access and potential exploitation of user accounts or data.

Remediation

Users can upgrade to HCL IEM version 1.3, which addresses this vulnerability. For assistance with the upgrade process, contact the HCL IEM support team.

Added: Jul 25, 2025, 1:17 AM
Updated: Jul 25, 2025, 1:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
6.0
remediation
7.7
relevance
0.3
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.