CVE-2026-35149: HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation.
HCL DFXServer is affected by an Authentication Bypass vulnerability via server response manipulation. An unauthorized user without valid credentials can exploit this flaw by intercepting and altering the server's authentication responses, allowing them to gain unauthorized access to the application without verification.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-35149?
CVE-2026-35149 has a severity rating of high, with a score of 8.2.
What type of vulnerability is CVE-2026-35149?
CVE-2026-35149 is an Authentication Bypass vulnerability that allows unauthorized access to HCL DFXServer.
How can an attacker exploit CVE-2026-35149?
An attacker can exploit CVE-2026-35149 by intercepting and manipulating server authentication responses.
What impact does CVE-2026-35149 have on HCL DFXServer?
CVE-2026-35149 allows unauthorized users to gain access to the application without valid credentials.
How do I fix CVE-2026-35149?
To fix CVE-2026-35149, it is recommended to apply the latest security updates and patches provided by HCL for DFXServer.