First published: Fri Aug 11 2023(Updated: )
If certain App Transport Security (ATS) settings are set in a certain manner, insecure loading of web content can be achieved.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Traveler To Do | <12.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-37511 is medium with a severity value of 4.3.
Insecure loading of web content can be achieved with certain App Transport Security (ATS) settings in CVE-2023-37511 if they are set in a certain manner.
The software affected by CVE-2023-37511 is Hcltech Traveler To Do version up to exclusive 12.0.6 running on iPhone OS.
To fix CVE-2023-37511, it is recommended to update the Hcltech Traveler To Do software to a version higher than 12.0.6.
More information about CVE-2023-37511 can be found at the following link: [support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106690](support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0106690)