CVE-2024-23566CWE-804

HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented

Medium · published July 17, 2026

CVSS v3.1
6.5
EPSS
0%
Percentile
18.3
In the wild
Unconfirmed
What it is

HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various security issues like brute force , automated attacks & account enumeration

The record
Technical detail
CVSS v3.1
6.5 · MEDIUM
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CVSS v4.0
Not supplied
EPSS
0.00266 · 18.3th percentile
Weakness
CWE-804 · Guessable CAPTCHA
Published
2026-07-17T13:32Z
EPSS history
Timeline
  • 17 JUL 13:32Z
    HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented
    cvelistv5