First published: Fri May 01 2020(Updated: )
HCL Connections v5.5, v6.0, and v6.5 contains an open redirect vulnerability which could be exploited by an attacker to conduct phishing attacks.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Connections | =5.5 | |
Hcltech Connections | =6.0 | |
Hcltech Connections | =6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4209 is an open redirect vulnerability in HCL Connections v5.5, v6.0, and v6.5 that could allow attackers to conduct phishing attacks.
HCL Connections v5.5, v6.0, and v6.5 users are affected by CVE-2019-4209.
CVE-2019-4209 has a severity level of 6.1 (medium).
An attacker can exploit CVE-2019-4209 by using the open redirect vulnerability to conduct phishing attacks.
Yes, HCL Tech has released a fix for CVE-2019-4209. Please refer to the official HCL Tech support page for more information.