CVE-2020-14247: Hcltechsw Onetest Performance

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

HCL OneTest Performance V9.5, V10.0, V10.1 contains an inadequate session timeout, which could allow an attacker time to guess and use a valid session ID.

Affected products

  • Hcltechsw Onetest Performance: version 9.5.0 only; version 10.0.0 only; version 10.1.0 only

Published 2021-02-04. Last modified 2026-06-17.