HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-28068 HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 31 Oct 2025 03:30:00 +0900

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech nomad Server On Domino
CPEs cpe:2.3:a:hcltech:nomad_server_on_domino:*:*:*:*:*:*:*:*
Vendors & Products Hcltech
Hcltech nomad Server On Domino

Wed, 30 Oct 2024 06:15:00 +0900

Type Values Removed Values Added
Weaknesses CWE-922

Tue, 01 Oct 2024 23:30:00 +0900

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 01 Oct 2024 21:15:00 +0900

Type Values Removed Values Added
Description HCL Nomad server on Domino did not configure certain HTTP Security headers by default which could allow an attacker to obtain sensitive information via unspecified vectors.
Title Missing default HTTP security headers affect HCL Nomad server on Domino
References
Metrics cvssV3_1

{'score': 3.7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2024-10-29T20:29:13.443Z

Reserved: 2024-03-22T23:57:23.589Z

Link: CVE-2024-30132

cve-icon Vulnrichment

Updated: 2024-10-01T13:29:37.103Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-01T12:15:03.687

Modified: 2025-10-30T18:15:31.587

Link: CVE-2024-30132

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses