CVE-2025-55261

HCL Aftermarket DPC is affected by Missing Functional Level Access Control which will allow attacker to escalate his privileges and may compromise the application and may steal and manipulate the data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*

History

26 Mar 2026, 20:01

Type Values Removed Values Added
First Time Hcltech
Hcltech aftermarket Cloud
CPE cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*
References () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - Vendor Advisory

26 Mar 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-26 14:16

Updated : 2026-03-26 20:01


NVD link : CVE-2025-55261

Mitre link : CVE-2025-55261

CVE.ORG link : CVE-2025-55261


JSON object : View

Products Affected

hcltech

  • aftermarket_cloud
CWE
CWE-284

Improper Access Control