Skip to main content

CVE-2022-38656

8.6
HIGHCVSS v3.1 Base Score
0.69%
LOW RiskEPSS (72nd percentile)

HCL Commerce, when using Elasticsearch, can allow a remote attacker to cause a denial of service attack on the site and make administrative changes.

Published: 12/12/2022
Modified: 11/21/2024
Back to CVE Lookup

Vulnerability Summary

CVSS v3 Score

8.6HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

EPSS Score (Exploitation Probability)

0.69%LOW Exploitation Risk
72nd percentile

This vulnerability has a 0.69% probability of being exploited in the next 30 days, ranking higher than 72% of all scored CVEs.

Related Vulnerabilities