CVE-2023-37511: HCL Traveler To Do is affected by App Transport Security (ATS) settings allowing insecure loads in web content
If certain App Transport Security (ATS) settings are set in a certain manner, insecure loading of web content can be achieved.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-37511?
The severity of CVE-2023-37511 is medium with a severity value of 4.3.
How can insecure loading of web content be achieved with certain App Transport Security (ATS) settings in CVE-2023-37511?
Insecure loading of web content can be achieved with certain App Transport Security (ATS) settings in CVE-2023-37511 if they are set in a certain manner.
Which software is affected by CVE-2023-37511?
The software affected by CVE-2023-37511 is Hcltech Traveler To Do version up to exclusive 12.0.6 running on iPhone OS.
How can I fix CVE-2023-37511?
To fix CVE-2023-37511, it is recommended to update the Hcltech Traveler To Do software to a version higher than 12.0.6.
Where can I find more information about CVE-2023-37511?
More information about CVE-2023-37511 can be found at the following link: [support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106690](support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106690)