CVE-2026-56567
Received Received - Intake

Security Misconfiguration Exposes HCL iControl Files

Vulnerability report for CVE-2026-56567, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-31

Last updated on: 2026-07-31

Assigner: HCL Software

Description

HCL iControl v4.3.0 was affected by Security Misconfiguration vulnerabilities. It involves the public exposure of internal configuration files due to improper web server or application hardening.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-31
Last Modified
2026-07-31
Generated
2026-07-31
AI Q&A
2026-07-31
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
hcl icontrol 4.3.0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-15 One or more system settings or configuration elements can be externally controlled by a user.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

HCL iControl v4.3.0 had security misconfiguration issues where internal configuration files were publicly exposed due to improper hardening of the web server or application.

Impact Analysis

Attackers could access sensitive configuration data, potentially leading to unauthorized system access, data leaks, or further exploitation of the application.

Compliance Impact

This vulnerability could lead to non-compliance with GDPR or HIPAA by exposing sensitive data, resulting in legal penalties or loss of trust.

Mitigation Strategies

Immediately restrict public access to HCL iControl configuration files by reviewing and updating web server or application hardening settings. Ensure internal files are not exposed externally and apply proper access controls.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-56567. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart