HCL DevOps Deploy / HCL Launch could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements.
Metrics
Affected Vendors & Products
References
History
Fri, 11 Apr 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltechsw
Hcltechsw hcl Devops Deploy Hcltechsw hcl Launch |
|
| CPEs | cpe:2.3:a:hcltechsw:hcl_devops_deploy:*:*:*:*:*:*:*:* cpe:2.3:a:hcltechsw:hcl_devops_deploy:8.1.0:*:*:*:*:*:*:* cpe:2.3:a:hcltechsw:hcl_launch:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltechsw
Hcltechsw hcl Devops Deploy Hcltechsw hcl Launch |
Mon, 24 Mar 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 24 Mar 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL DevOps Deploy / HCL Launch could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted input containing special elements. | |
| Title | HCL DevOps Deploy / HCL Launch is susceptible to command injection vulnerability | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published: 2025-03-24T16:32:21.022Z
Updated: 2025-03-24T17:59:23.661Z
Reserved: 2025-01-06T16:00:31.318Z
Link: CVE-2025-0255
Updated: 2025-03-24T17:59:17.968Z
Status : Analyzed
Published: 2025-03-24T17:15:20.110
Modified: 2025-04-11T17:40:04.390
Link: CVE-2025-0255
No data.