PT-2025-7937 · Hcl · Hcl Mycloud

Published

2025-02-25

·

Updated

2026-01-09

·

CVE-2024-30150

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions HCL MyCloud (affected versions not specified)
Description The issue is related to Improper Access Control, which is an unauthenticated privilege escalation vulnerability. This may lead to information disclosure and has the potential for Server-Side Request Forgery (SSRF) and Denial of Service (DOS) attacks from unauthenticated users.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

LPE

Improper Privilege Management

SSRF

Weakness Enumeration

Related Identifiers

CVE-2024-30150

Affected Products

Hcl Mycloud