CVE-2025-55263

HCL Aftermarket DPC is affected by Hardcoded Sensitive Data which allows attacker to gain access to the source code or if it is stored in insecure repositories, they can easily retrieve these hardcoded secrets.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*

History

17 Jun 2026, 09:41

Type Values Removed Values Added
Summary
  • (es) HCL Aftermarket DPC se ve afectado por Datos Sensibles Incrustados, lo que permite al atacante obtener acceso al código fuente o, si está almacenado en repositorios inseguros, pueden recuperar fácilmente estos secretos incrustados.

26 Mar 2026, 19:57

Type Values Removed Values Added
References () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - Vendor Advisory
CPE cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*
First Time Hcltech
Hcltech aftermarket Cloud

26 Mar 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-26 14:16

Updated : 2026-06-17 09:41


NVD link : CVE-2025-55263

Mitre link : CVE-2025-55263

CVE.ORG link : CVE-2025-55263


JSON object : View

Products Affected

hcltech

  • aftermarket_cloud
CWE
CWE-798

Use of Hard-coded Credentials