CVE-2024-23566CWE-804
HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented
Medium · published July 17, 2026
What it is
HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead to various security issues like brute force , automated attacks & account enumeration
The record
Technical detail
- CVSS v3.1
- 6.5 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00266 · 18.3th percentile
- Weakness
- CWE-804 · Guessable CAPTCHA
- Published
- 2026-07-17T13:32Z
EPSS history
Timeline