CVE-2026-21837
HCLSoftware Digital Experience, digital experience, digital experience compose 취약점
HCL Digital Experience is affected by an OS command injection vulnerability in the Digital Asset Management API. An attacker may execute arbitrary operating system commands, typically inheriting the privileges of the vulnerable application, which could possibly lead to a complete system takeover and data compromise.
- 대응 우선순위
- 점검
- CVSS
- 8.7
- EPSS
- 0.92% 백분위 56.8% · 2026.08.03 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.06.05