PT-2025-18331 · Hcl · Hcl Domino Volt

Published

2025-04-30

·

Updated

2025-04-30

·

CVE-2022-42449

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions HCL Domino Volt (affected versions not specified)
Description The issue concerns an unsafe default file type filter policy that allows the upload of .html files, leading to the execution of unsafe JavaScript in deployed applications. This could potentially impact a significant number of applications, but the exact number of affected devices worldwide is not specified. There is no information provided about real-world incidents where this issue was exploited.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

CVE-2022-42449

Affected Products

Hcl Domino Volt