4 results (0.007 seconds)

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

14 Jun 2024 — HCL DRYiCE Optibot Reset Station is impacted by an Unused Parameter in the web application. La estación de reinicio HCL DRYiCE Optibot se ve afectada por un parámetro no utilizado en la aplicación web. • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0113496 • CWE-563: Assignment to Variable without Use •

CVSS: 6.4EPSS: 0%CPEs: 1EXPL: 0

14 Jun 2024 — HCL DRYiCE Optibot Reset Station is impacted by a missing Strict Transport Security Header. This could allow an attacker to intercept or manipulate data during redirection. La estación de reinicio HCL DRYiCE Optibot se ve afectada por la falta de un encabezado de seguridad de transporte estricto. Esto podría permitir a un atacante interceptar o manipular datos durante la redirección. HCL DRYiCE Optibot Reset Station is impacted by a missing Strict Transport Security Header. • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0113496 • CWE-326: Inadequate Encryption Strength CWE-522: Insufficiently Protected Credentials •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

28 May 2024 — HCL DRYiCE Optibot Reset Station is impacted by insecure encryption of One-Time Passwords (OTPs). This could allow an attacker with access to the database to recover some or all encrypted values. HCL DRYiCE Optibot Reset Station se ve afectada por el cifrado inseguro de contraseñas de un solo uso (OTP). Esto podría permitir que un atacante con acceso a la base de datos recupere algunos o todos los valores cifrados. HCL DRYiCE Optibot Reset Station is impacted by insecure encryption of One-Time Passwords (OT... • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0113496 • CWE-326: Inadequate Encryption Strength •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

28 May 2024 — HCL DRYiCE Optibot Reset Station is impacted by insecure encryption of security questions. This could allow an attacker with access to the database to recover some or all encrypted values. HCL DRYiCE Optibot Reset Station se ve afectada por un cifrado inseguro de preguntas de seguridad. Esto podría permitir que un atacante con acceso a la base de datos recupere algunos o todos los valores cifrados. • https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0113496 • CWE-326: Inadequate Encryption Strength •