HCL Aftermarket EPC is vulnerable to email flooding as the application does not have a proper mail limitation mechanism at Forget Password functionality. The actor could b e a human or an automated process such as a virus or bot. This could be used to cause a denial of service, compromise program logic or other consequences.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-07-17 14:17
Updated : 2026-07-17 17:56
NVD link : CVE-2024-23565
Mitre link : CVE-2024-23565
CVE.ORG link : CVE-2024-23565
JSON object : View
Products Affected
No product.
CWE
CWE-799
Improper Control of Interaction Frequency
