CNNVD-202601-1208 Information

CNNVD ID

CNNVD-202601-1208

CVE-2025-62327

  • CNNVD Published: 2026-01-07

Description (Chinese)

HCL DevOps Deploy是印度HCL公司的一款应用程序。可以使用灵活的基于团队和基于角色的安全模型,映射到您的组织结构。 HCL DevOps Deploy 8.1.2.0版本至8.1.2.3版本存在安全漏洞,该漏洞源于LLM配置权限不当,可能导致凭据恢复。

Description (English)

HCL DevOps Deploy is an application of HCL India. A flexible team- and role-based security model can be used to map your organizational structure. There is a security gap between HCL DevOps versions 8.1.2.0 to 8.1.3.3, which stems from the inappropriate LLM configuration privileges that may lead to the restoration of the evidence.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

HCL

Published

2026-01-07

Last Modified

2026-02-24

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0127336

Patch

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0127336

Share on: