First published: Fri Feb 14 2020(Updated: )
HCL AppScan Standard Edition 9.0.3.13 and earlier uses hard-coded credentials which can be exploited by attackers to get unauthorized access to the system.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL AppScan | <=9.0.3.13 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4392 has a high severity rating due to the potential for unauthorized access through hard-coded credentials.
To fix CVE-2019-4392, update HCL AppScan Standard Edition to a version later than 9.0.3.13 that does not use hard-coded credentials.
CVE-2019-4392 affects HCL AppScan Standard Edition versions up to and including 9.0.3.13.
CVE-2019-4392 is classified as an authentication vulnerability due to the presence of hard-coded credentials in the software.
Organizations using HCL AppScan Standard Edition 9.0.3.13 or earlier are at risk of exploitation through CVE-2019-4392.