← Vulnerability feed

Vulnerability record · CVE-2024-42192 · published 16 October 2025

CVE-2024-42192: Hcltech traveler for microsoft outlook insufficiently protected credentials vulnerability

Hcltech · Traveler For Microsoft Outlook

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a credential leakage which could allow an attacker to access other computers or applications.

5.5 CVSS 3.1 Medium EPSS 0.16% · top 95.8% CWE-522 · Insufficiently protected credentials
5.5CVSS 3.1 base score
0.16%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a credential leakage which could allow an attacker to access other computers or applications.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2024-42192 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2024-42190Hcltech traveler for microsoft outlook uncontrolled search path element vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a DLL hijacking vulnerability which could allow an attacker to modify or replace the appl…EPSS 0.27%9.8CVE-2024-42191Hcltech traveler for microsoft outlook uncontrolled search path element vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a COM hijacking vulnerability which could allow an attacker to modify or replace the appl…EPSS 0.27%7.8CVE-2023-37524Hcltech traveler for microsoft outlook vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to vulnerabilities due to .NET Framework 4.5 being out of service.  Since .NET Framework 4.5…EPSS 0.27%7.8CVE-2024-23581Hcltech traveler for microsoft outlook improper verification of cryptographic signature vulnerabilityThe HCL Traveler for Microsoft Outlook libraries are being flagged as potentially malicious software or an unrecognized application.EPSS 0.09%7.5CVE-2024-30134Hcltech traveler for microsoft outlook improper certificate validation vulnerabilityThe HCL Traveler for Microsoft Outlook executable (HTMO.exe) is being flagged as potentially Malicious Software or an Unrecognized Application.EPSS 0.21%5.5CVE-2025-59868Hcltech traveler for microsoft outlook sensitive information in log file vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability which could allow an attacker to exploit applicat…EPSS 0.15%5.3CVE-2024-30133Hcltech traveler for microsoft outlook vulnerabilityHCL Traveler for Microsoft Outlook (HTMO) is susceptible to a control flow vulnerability. The application does not sufficiently manage its control fl…EPSS 0.26%9.8CVE-2021-22681Rockwell Logix Designer authentication bypass via weak key verificationRockwell Automation Studio 5000 Logix Designer (v21+) and RSLogix 5000 (v16-20) rely on a key to verify that Logix controllers are talking to genuine…KEVEPSS 64%analysed

Source: NIST National Vulnerability Database (record CVE-2024-42192), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.