SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2024-23573

LOW · CVSS 3.7 EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL Aftermarket EPC is vulnerable to the Lucky 13 attack, which affects its implementations of TLS 1.1, 1.2, DTLS 1.0, and 1.2, as well as earlier versions like SSL 3.0 and TLS 1.0. This vulnerability can facilitate man-in-the-middle attacks, potentially compromising the confidentiality of sensitive data transmitted over affected protocols. Organizations using these versions of HCL Aftermarket EPC should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2024-23573
Severity
LOW
CVSS
3.7
EPSS
0.15%

Original NVD Description

HCL Aftermarket EPC is vulnerable to attack since the Application is vulnerable to Lucky 13. that makes the SS LLUCKY13 possible affects the TLS1.1and 1.2 and DTLS1.0 or 1.2 implementations . It also affects previous versions such as SSL3.0 and TLS1.0. This can also be considered a type of man-in-the-middle attack.