SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-56585

LOW · CVSS 3.1 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

HCL IEM is vulnerable due to the absence of the X-Frame-Options header, which exposes the application to clickjacking attacks. This flaw could enable attackers to embed the application within malicious sites, potentially leading to unauthorized actions by users. Organizations utilizing HCL IEM should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-56585
Severity
LOW
CVSS
3.1
EPSS
0.14%

Original NVD Description

HCL IEM was affected with the Anti Clickjacking XFrame Options Header Missing. It may allow attackers to embed the application in malicious pages and induce unauthorized user actions.

Related CVEs

Other vulnerabilities affecting the same vendor(s)