First published: Tue Oct 17 2023(Updated: )
An unquoted service path vulnerability in HCL AppScan Presence, deployed as a Windows service in HCL AppScan on Cloud (ASoC), may allow a local attacker to gain elevated privileges.
Credit: psirt@hcl.com psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hcltech Appscan Presence | <=2.1.37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this HCL AppScan Presence vulnerability is CVE-2023-37537.
CVE-2023-37537 has a severity rating of 7.8 (high).
The affected software for CVE-2023-37537 is HCL AppScan Presence version up to and inclusive of 2.1.37.
CVE-2023-37537 may allow a local attacker to gain elevated privileges.
Yes, HCL AppScan Presence users should update to a version higher than 2.1.37 to fix CVE-2023-37537.