SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2024-23574

MEDIUM · CVSS 5.3 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL Aftermarket EPC is susceptible to brute-force attacks that allow malicious actors to guess or confirm valid user credentials. This vulnerability can lead to unauthorized access, potentially compromising sensitive data and system integrity. Organizations utilizing this software should prioritize remediation efforts to mitigate the risk of account takeover.

CVE
CVE-2024-23574
Severity
MEDIUM
CVSS
5.3
EPSS
0.20%

Original NVD Description

HCL Aftermarket EPC is vulnerable to attack since It was found that a malicious actor can use brute-force techniques to either guess or confirm valid users in the system. Use renumeration is when a malicious actor can use brute-force techniques to either guess or confirm valid users in a system