
Find real vulnerabilities before they ship
HCL AION is affected by a vulnerability where backend service details may be transmitted over insecure HTTP channels. This may expose sensitive information to potential interception or unauthorized access during transmission under certain conditions
Base Score
4.3| Base Score | 4.3 |
|---|---|
| Vector String | CVSS:3.1/AV:A/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L |
| Base Severity | Medium |
| Version | 3.1 |
| Attack Vector (AV) | ADJACENT_NETWORK |