SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-56608

LOW · CVSS 3.7 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-08-03 · Last synced 2026-09-02

CyberRota Analysis

AI-Generated

HCL iControl is vulnerable due to a missing access control flaw that permits unauthorized users to access administrator-level functionalities. This could lead to unauthorized data exposure or manipulation, posing a risk to the integrity of the application. Organizations using HCL iControl should prioritize remediation to prevent potential exploitation of this vulnerability.

CVE
CVE-2026-56608
Severity
LOW
CVSS
3.7
EPSS
0.16%

Original NVD Description

HCL iControl is affected by Missing Access Control vulnerability. The application failed to enforce proper granular access controls, allowing users to access or view administrator-level functionalities without appropriate authorization.

Related CVEs

Other vulnerabilities affecting the same vendor(s)