First published: Thu Feb 02 2023(Updated: )
An open redirect to malicious sites can occur when accessing the "Feedback" action on the manager page.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Hcl Leap | <9.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38657 is a vulnerability that allows open redirects to malicious sites when accessing the "Feedback" action on the manager page.
Hcltech Hcl Leap version up to 9.3 is affected by CVE-2022-38657.
Apply the latest update or patch provided by Hcltech to fix the vulnerability.
CVE-2022-38657 has a severity rating of 5.4 (High).
You can find more information about CVE-2022-38657 at the following link: [link](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0097201)