SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2024-23566

MEDIUM · CVSS 6.5 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL Aftermarket EPC is susceptible to brute force attacks due to the absence of CAPTCHA implementation, allowing attackers to exploit this vulnerability for automated login attempts and account enumeration. This can lead to unauthorized access and compromise user accounts. Organizations using this application should prioritize remediation to mitigate potential security risks associated with automated attacks.

CVE
CVE-2024-23566
Severity
MEDIUM
CVSS
6.5
EPSS
0.16%

Original NVD Description

HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various security issues like brute force , automated attacks & account enumeration