SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2024-23568

MEDIUM · CVSS 5.3 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL Aftermarket EPC is vulnerable due to the exposure of its server software version through the web server, which could enable attackers to identify and exploit known vulnerabilities associated with that version. Organizations using this application should prioritize addressing this issue to mitigate the risk of targeted attacks, especially if they are running outdated software. Regularly updating and obscuring version information can help reduce the attack surface.

CVE
CVE-2024-23568
Severity
MEDIUM
CVSS
5.3
EPSS
0.24%

Original NVD Description

HCL Aftermarket EPC is vulnerable to attacks since the server software version used by the application is revealed by the web server. Displaying version information of software could allow an attacker to determine which vulnerabilities are present in the software, particularly if an outdated software version is in use with published vulnerabilities.