First published: Thu Apr 24 2025(Updated: )
Insufficient default configuration in HCL Leap allows anonymous access to directory information.
Credit: psirt@hcl.com
Affected Software | Affected Version | How to fix |
---|---|---|
HCL Leap |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-45720 is classified as a moderate severity vulnerability due to its potential for unauthorized access.
To remediate CVE-2023-45720, ensure proper authentication and access controls are configured for HCL Leap deployments.
The key risk of CVE-2023-45720 is that it allows unauthorized users to access sensitive directory information.
CVE-2023-45720 affects all versions of HCL Leap that have insufficient default configuration.
Yes, CVE-2023-45720 can be exploited by anonymous users if proper security measures are not in place.