CVE-2023-45702: HCL Launch Agent as a Windows service is vulnerable to a Denial of Service
Published Dec 28, 2023
·Updated
An HCL UrbanCode Deploy Agent installed as a Windows service in a non-standard location could be subject to a denial of service attack by local accounts..
Affected Software
3 affected components
All of the following
Any of the following
Hcltechsw Hcl Launch>=7.2.0.0<=7.2.3.7
Hcltechsw Hcl Launch>=7.3.0.0<=7.3.2.2
Microsoft Windows
Event History
Dec 28, 2023
CVE Published
07:29 AM
Data Sourced
07:29 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2023-45702?
CVE-2023-45702 has been classified as a denial of service vulnerability.
2
How can I mitigate the risk associated with CVE-2023-45702?
To mitigate CVE-2023-45702, ensure that the HCL UrbanCode Deploy Agent is installed in a standard location and limit local account access.
3
Which versions of HCL UrbanCode Deploy are affected by CVE-2023-45702?
CVE-2023-45702 affects HCL Launch versions from 7.2.0.0 to 7.2.3.7 and from 7.3.0.0 to 7.3.2.2.
4
Is HCL UrbanCode Deploy safe to use on all Windows versions regarding CVE-2023-45702?
CVE-2023-45702 specifically applies to HCL UrbanCode Deploy Agents installed as Windows services and does not indicate vulnerability for all Windows versions.
5
What type of attack does CVE-2023-45702 expose the software to?
CVE-2023-45702 exposes the software to a denial of service attack, impacting availability.