CVE-2024-23572: Medium severity HCL Aftermarket EPC vulnerability
Published Jul 17, 2026
·Updated
HCL Aftermarket EPC is vulnerable to attack as cookie appears to contain a session token, which may increase the risk associated with this issue. You should review the contents of the cookie to determine its function.
Affected Software
1 affected component
HCL Aftermarket EPC
Event History
Jul 17, 2026
CVE Published
via MITRE·01:51 PM
Data Sourced
via MITRE·01:51 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-23572?
CVE-2024-23572 has a medium severity rating of 4.2.
2
What vulnerabilities does CVE-2024-23572 expose?
CVE-2024-23572 exposes the potential risk of session token leakage through cookies.
3
How can I mitigate CVE-2024-23572?
To mitigate CVE-2024-23572, review and possibly secure the session token stored in the cookie.
4
Which software is affected by CVE-2024-23572?
CVE-2024-23572 affects the HCL Aftermarket EPC software.
5
When was CVE-2024-23572 published?
CVE-2024-23572 was published on July 17, 2026.