CVE-2023-37524
HIGH
7.7
CVSS 3.1
Description
HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service. Since .NET Framework 4.5 has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses through vulnerable third-party components.
Metadata
Severity & Metrics
7.7
HIGH CVSS 3.1
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Affected products (1)
| Vendor | Product | Platform | Versions |
|---|---|---|---|
| HCLSoftware | Traveler for Microsoft Outlook | — | <3.0.6 |
Weakness (CWE)
| CWE | Source | Description |
|---|---|---|
| CWE-1104 | cna | CWE-1104 Use of unmaintained third party components |
CVSS scores (1)
| Score | Severity | Version | Source | Vector |
|---|---|---|---|---|
| 7.7 | HIGH | 3.1 | cna | CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H |