HCL Connections is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user which leads to executing malicious script code. This may let the attacker steal cookie-based authentication credentials and comprise user's account then launch other attacks.
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 28 Oct 2025 19:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Hcltech Hcltech connections | |
| CPEs | cpe:2.3:a:hcltech:connections:7.0:*:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:-:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release1:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release2:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release3:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release4:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release5:*:*:*:*:*:* cpe:2.3:a:hcltech:connections:8.0:cumulative_release6:*:*:*:*:*:* | |
| Vendors & Products | Hcltech Hcltech connections | 
Wed, 30 Oct 2024 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-79 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: HCL
Published: 2024-06-25T21:28:23.078Z
Updated: 2024-10-30T17:32:31.169Z
Reserved: 2024-03-22T23:57:21.324Z
Link: CVE-2024-30112
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T01:25:02.998Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-06-25T22:15:30.117
Modified: 2025-10-28T18:53:09.860
Link: CVE-2024-30112
 Redhat
                        Redhat
                    No data.