HCL iControl was affected by Auto complete Enabled vulnerabilities. It involves expose sensitive information such as: Valid usernames, Email addresses used for login, Account identifiers If the system is accessed from shared environments, attackers may enumerate valid usernames through browser suggestions.
References
| Link | Resource |
|---|---|
| https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0132395 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-07-31 16:17
Updated : 2026-08-05 14:32
NVD link : CVE-2026-56570
Mitre link : CVE-2026-56570
CVE.ORG link : CVE-2026-56570
JSON object : View
Products Affected
hcltech
- icontrol
CWE
CWE-522
Insufficiently Protected Credentials
