CVE-2024-30109
28.06.2024, 06:15
HCL DRYiCE AEX is impacted by a lack of clickjacking protection in the AEX web application. An attacker can use multiple transparent or opaque layers to trick a user into clicking on a button or link on another page than the one intended.Enginsight
| Vendor | Product | Version |
|---|---|---|
| hcltech | dryice_aex | 10.0 |
𝑥
= Vulnerable software versions