CVE-2023-45721: HCL Domino Volt and Domino Leap are affected by a disclosure of private personal information vulnerability
Published Apr 30, 2025
·Updated
Insufficient default configuration in HCL Leap allows anonymous access to directory information.
Affected Software
3 affected components
HCL Domino Volt
HCL Domino Leap
hcltech Domino Leap>=1.1<1.1.4
Event History
Apr 30, 2025
CVE Published
via MITRE·09:13 PM
Data Sourced
via MITRE·09:13 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-45721?
CVE-2023-45721 is classified as a medium severity vulnerability due to the risk of unauthorized access to sensitive directory information.
2
How do I fix CVE-2023-45721?
To fix CVE-2023-45721, configure HCL Domino Leap and Domino Volt to restrict anonymous access to directory information.
3
What software is affected by CVE-2023-45721?
CVE-2023-45721 affects HCL Domino Volt and HCL Domino Leap applications.
4
What type of access does CVE-2023-45721 allow?
CVE-2023-45721 allows anonymous users to gain unauthorized access to directory information.
5
Are there any workarounds for CVE-2023-45721?
There are no official workarounds for CVE-2023-45721, and it is recommended to apply the configuration fix to mitigate the vulnerability.