SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2024-23575

MEDIUM · CVSS 5.3 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

HCL Aftermarket EPC is vulnerable due to the exposure of detailed error messages that disclose sensitive information about server processing. This information can be leveraged by attackers to execute more targeted attacks against the application. Organizations using this software should prioritize remediation to mitigate the risk of further exploitation.

CVE
CVE-2024-23575
Severity
MEDIUM
CVSS
5.3
EPSS
0.20%

Original NVD Description

HCL Aftermarket EPC is vulnerable to attack since the application returns detailed error messages that leak information about the processing on the server. An attacker may use the contents of error messages to help launch another ,more focused attack.