-
Digital Transformation
- HCL Commerce E-Commerce für Unternehmen im B2C- und B2B-Geschäft
- HCL Connections Plattform für die Zusammenarbeit im Unternehmen
- HCL Customer Data Platform Flexible und anpassbare Kundendatenplattform
- HCL Discover Verhaltensanalysen für Customer Journeys
- HCL Domino Plattform für schnelle Anwendungsentwicklung
- HCL DX Die DXP für die wichtigen Momente
- HCL Marketing Cloud Präzises Marketing im großen Maßstab mit KI vorantreiben
- HCL Sametime Sichere Videomeetings und Chats für Unternehmen
- HCL Unica Plattform zur Marketing-Automatisierung für Unternehmen
- HCL Volt MX Multi-experience App-Entwicklung mit Low Code
Andere vorgestellte Produkte
-
Data and Analytics
- HCL Actian Ermöglicht ein datengesteuertes Unternehmen
- HCL Actian Data Platform Data Services Suite mit flexiblem Betriebsmodell
- HCL DataConnect Low-Code-Integrationsplattform
- HCL Ingres Transactional Database Legendäres transaktionales RDBMS
- HCL OneDB Erstellen von datenbankgestützten Unternehmensanwendungen
- HCL Vector Analytics Leistungsstarke BI und Analytik
- HCL Zen Edge Data Management Integrierbares Edge Data Management
Andere vorgestellte Produkte
-
AI and Automation
- HCL Automation Orchestration Orchestrieren und optimieren Sie die Geschäftsautomatisierung
- HCL Automation Power Suite IT- und Business-Automatisierung beschleunigen
- HCL BigFix Sichere Endpunktverwaltung
- HCL DRYiCE KI als Grundlage für das Digital Enterprise
- HCL Secure DevOps Automatisierte Tests und Sicherheitsüberprüfungen
Andere vorgestellte Produkte
- Enterprise Security
- Cloud
-
Produkte
- Banking and Financial Services Bewährte Lösungen für das Bankwesen
- Healthcares Bereitstellung neuer Patientenerfahrungen
- Insurance Verbessern Sie die Erfahrungen der Versicherungsnehmer
- Manufacturing Transformation der traditionellen Fertigung
- Retail Erfüllen Sie die sich ändernden Bedürfnisse und Erwartungen der Verbraucher
- Learn & Support
- Partners
- Kontakt
-
Digital Transformation
- Digital Transformation Übersicht Technologie, die Menschen und Systeme in Einklang bringt
- HCL Commerce E-Commerce für Unternehmen im B2C- und B2B-Geschäft
- HCL ConnectionsPlattform für die Zusammenarbeit im Unternehmen
- HCL Customer Data PlatformFlexible und anpassbare Kundendatenplattform
- HCL DiscoverVerhaltensanalysen für Customer Journeys
- HCL DominoPlattform für schnelle Anwendungsentwicklung
- HCL DXDie DXP für die wichtigen Momente
- HCL Marketing CloudPräzises Marketing im großen Maßstab mit KI vorantreiben
- HCL SametimeSichere Videomeetings und Chats für Unternehmen
- HCL UnicaPlattform zur Marketing-Automatisierung für Unternehmen
- HCL Volt MXMulti-experience App-Entwicklung mit Low Code
- Andere vorgestellte Produkte
- HCL Now
- HCL SoFy
- HCL Cloud Native
- Data and Analytics
- Data, Analytics & Insights ÜbersichtZuverlässige, flexible und einfach zu bedienende Plattformen
- HCL ActianErmöglicht ein datengesteuertes Unternehmen
- HCL Actian Data PlatformData Services Suite mit flexiblem Betriebsmodell
- HCL DataConnectLow-Code-Integrationsplattform
- HCL Ingres Transactional DatabaseLegendäres transaktionales RDBMS
- HCL OneDBErstellen von datenbankgestützten Unternehmensanwendungen
- HCL Vector AnalyticsLeistungsstarke BI und Analytik
- HCL Zen Edge Data ManagementIntegrierbares Edge Data Management
- Andere vorgestellte Produkte
- HCL Now
- HCL SoFy
- HCL Cloud Native
- AI and Automation
- AI and Automation Overview Humanizing AI to solve real-world problems
- HCL Automation OrchestrationOrchestrieren und optimieren Sie die Geschäftsautomatisierung
- HCL Automation Power SuiteIT- und Business-Automatisierung beschleunigen
- HCL DRYiCEKI als Grundlage für das Digital Enterprise
- HCL Secure DevOpsAutomatisierte Tests und Sicherheitsüberprüfungen
- Andere vorgestellte Produkte
- HCL Now
- HCL SoFy
- HCL Cloud Native
- Enterprise Security
-
Cloud
- Übersicht über das Cloud-AngebotUmfassende, auf Cloud-Diensten basierende Transformation
- Business CloudEinheitliche Infrastrukturplattform
- AppDev CloudProCode, Low-Code, No-Code
- Hybrid Data CloudGemeinsame Datenintegrationsschicht
- Automation CloudSatz aller Automatisierungsressourcen
- Andere vorgestellte Produkte
- HCL Now
- HCL SoFy
- HCL Cloud Native
- Produkte
-
Alphabetical List
- AI and Automation
- HCL DevOps Velocity
- HCL Automation Orchestration
- HCL Automation Power Suite
- HCL Clara
- HCL DevOps Plan
- HCL DRYiCE
- HCL Hero
- HCL Secure DevOps
- HCL DevOps Deploy
- HCL DevOps Test
- HCL DevOps Test Embedded
- HCL DevOps Model RealTime
- HCL DevOps Code ClearCase
- HCL Workload Automation
- HCL Mainframe Solutions
- HCL Z Asset Optimizer
- HCL Z Data Tools
- HCL Z Abend Investigator
- HCL Z and I Emulator
- Data and Analytics
- HCL Actian
- HCL Actian Data Platform
- HCL DataConnect
- HCL Ingres Transactional Database
- HCL Vector Analytics
- HCL OneDB
- HCL Zen Edge Data Management
- Digital Transformation
- HCL Commerce
- HCL Discover
- HCL Marketing Cloud
- HCL DX
- HCL Unica
- HCL Connections
- HCL Customer Data Platform
- HCL Domino
- HCL Sametime
- HCL Volt MX
- Enterprise Security
- HCL AppScan
- HCL BigFix
- Andere vorgestellte Produkte
- HCL Cloud Native
- HCL Now
- HCL Sofy
- Alle produkte
-
Industry Software Solutions
- Telecom & 5G
- HCL Augmented Network Automation (SON)
- HCL iCE.X
- HCL NFV AccelerationNetzwerk-Performance-Beschleuniger
- HCL X-HaulKomplette Modem-IP-Suite
- HCL SMARTWiFiIntelligente WiFi-Cloud-Plattform
- Entreprise Cloud AI
- HCL IntelliService
- HCL IntelliSearch
- Digital Manufacturing
- HCL CAMWorks
- HCL DFMPro
- HCL Glovius
- Field Service
- Quest Informatics SolutionsEfficient inventory management
- Branchen
-
Alphabetical List
- Learn & Support
- Partners
- Kontakt

HCLSOFTWARE PRODUCT SECURITY INCIDENT RESPONSE
HCLSOFTWARE VULNERABILITY DISCLOSURE POLICY
HCLSoftware recognizes how important the security community is in keeping our products and our customers safe. We thank you in advance for your contributions to our vulnerability disclosure program.
The HCLSoftware Vulnerability Management Team manages the receipt, investigation and internal coordination of security vulnerability information related to HCLSoftware offerings. This team will coordinate with HCL product and solutions teams to investigate and, if needed, identify the appropriate response plan. Maintaining communication between all involved parties, both internal and external, is a key component of our vulnerability response process.
HCL will aim to respond to new reports within 2 business days.
Customers and other entitled users of a product or solution should contact HCLSoftware Customer Support to report issues discovered in HCL offerings. If the HCLSoftware Customer Support Team determines that a reported issue is a security vulnerability, it will contact HCLSoftware Vulnerability Management Team, as needed.
GUIDELINES
- To be eligible to participate in this program, you must not be under contract to perform security testing for HCL Corporation, or an HCL subsidiary, or HCL client within 6 months prior to submitting a report.
- Only report vulnerabilities for HCLSoftware products that are currently in support. Check the “In Scope” section below for the product list. Only the current release and the previous release of any of these products are covered by this program.
- To protect our customers, HCLSoftware does not publicly disclose or confirm security vulnerabilities until HCLSoftware has conducted an analysis of the product and issued fixes and/or mitigations. By submitting a vulnerability report to HCLSoftware, you agree to not publicly disclose or share the vulnerability with any third party until HCLSoftware confirms that the vulnerability has been remediated or you have received written permission from HCLSoftware to publish information about the vulnerability.
- HCLSoftware does not participate in bug bounty awards programs at this time.
- In order for HCL to evaluate your vulnerability report, you agree to provide the following information about your finding: your email address (required) and details on the software product and version, a description of the issue, the hardware platform, steps to reproduce the issue, and potential impact. See section “Report a Security Vulnerability”.
- Do not include any information that may identify an individual (such as a name, contact information, IP address or other similar information) in any attachments included in your vulnerability report.
OUT OF SCOPE VULNERABILITIES
The following submissions are not accepted as part of this program.
- Clickjacking on pages with no sensitive state changing actions.
- Unauthenticated/logout/login CSRF.
- Attacks requiring MITM or physical access to a user's device.
- Previously known vulnerable libraries without a working Proof of Concept.
- Comma Separated Values (CSV) injection without demonstrating a vulnerability.
- Best practices that do not lead to an actionable vulnerability or do not have a CVE.
- Any activity that could lead to the disruption of our service (DoS).
- Content spoofing and text injection issues without showing an attack vector/without being able to modify HTML/CSS.
- HCLSoftware that has reached End Of Support (EOS) is not accepted and will receive a "Not Applicable" response.
- Publicly known data meant to be accessed by anyone. Please note: if you find a directory listing and explain how it can lead to a malicious exploit then we'll accept it.
LEGAL NOTICE
By submitting a vulnerability report to HCL, you agree that HCL may use any information provided by you in such report for any HCL business purpose (including but not limited to reproduction of the vulnerability, remediation of the vulnerability and general development purposes), without requiring consent from or payment to you.
Also, it is important that you notify us if any such information or associated intellectual property is not your own work or is covered by the intellectual property rights of others. Not notifying us means that you've represented that no third-party intellectual property rights are involved.
Thank you for helping keep HCL and our customers safe!