HCL DFXServer
- <= 2.5
A vulnerability allowing unencrypted communication has been identified in HCL DFXServer versions 2.5 and below. The application allows users to connect over unencrypted HTTP channels, potentially enabling remote attackers to intercept network traffic and access sensitive data exchanged between users and the application.
Exploitation of this vulnerability could lead to interception of network traffic, allowing exposure of sensitive data transmitted between the user and the application.
Users can upgrade to HCL DFXServer version 3.2, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.