← Vulnerability feed

Vulnerability record · CVE-2023-37524 · published 27 June 2026

CVE-2023-37524: Hcltech traveler for microsoft outlook vulnerability

Hcltech · Traveler For Microsoft Outlook

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service.  Since .NET Framework 4.5 has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses through vulnerable third-party components.

7.8 CVSS 3.1 High EPSS 0.27% · top 82.4% CWE-1104 · CWE-1104
7.8CVSS 3.1 base score
0.27%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
6 Jul 2026Last modified by NVD

Description

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service.  Since .NET Framework 4.5 has reached end-of-life and no longer receives security updates, it may expose the application to publicly known security weaknesses through vulnerable third-party components.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2023-37524 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2024-42190Hcltech traveler for microsoft outlook uncontrolled search path element vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which could allow an attacker to modify or replace the appl…EPSS 0.27%9.8CVE-2024-42191Hcltech traveler for microsoft outlook uncontrolled search path element vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a COM hijacking vulnerability which could allow an attacker to modify or replace the appl…EPSS 0.27%7.8CVE-2024-23581Hcltech traveler for microsoft outlook improper verification of cryptographic signature vulnerabilityThe HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized application.EPSS 0.09%7.5CVE-2024-30134Hcltech traveler for microsoft outlook improper certificate validation vulnerabilityThe HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.EPSS 0.21%5.5CVE-2025-59868Hcltech traveler for microsoft outlook sensitive information in log file vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability which could allow an attacker to exploit applicat…EPSS 0.15%5.5CVE-2024-42192Hcltech traveler for microsoft outlook insufficiently protected credentials vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a credential leakage which could allow an attacker to access other computers or applicati…EPSS 0.16%5.3CVE-2024-30133Hcltech traveler for microsoft outlook vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a control flow vulnerability. The application does not sufficiently manage its control fl…EPSS 0.26%

Source: NIST National Vulnerability Database (record CVE-2023-37524), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.