CVE-2026-56587CWE-523

HCL IEM was affected with Strict transport security not enforced

Low · published July 21, 2026

CVSS v3.1
3.7
EPSS
0%
Percentile
15.6
In the wild
Unconfirmed
What it is

HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or man-in-the-middle attacks and compromise secure communications.

The record
Technical detail
CVSS v3.1
3.7 · LOW
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00244 · 15.6th percentile
Weakness
CWE-523 · Unprotected Transport of Credentials
Published
2026-07-21T14:36Z
EPSS history
Timeline
  • 21 JUL 14:36Z
    HCL IEM was affected with Strict transport security not enforced
    cvelistv5