HCL Aftermarket DPC is affected by Hardcoded Sensitive Data which allows attacker to gain access to the source code or if it is stored in insecure repositories, they can easily retrieve these hardcoded secrets.
References
| Link | Resource |
|---|---|
| https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 | Vendor Advisory |
Configurations
History
26 Mar 2026, 19:57
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Hcltech
Hcltech aftermarket Cloud |
|
| References | () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - Vendor Advisory | |
| CPE | cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:* |
26 Mar 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-26 14:16
Updated : 2026-03-26 19:57
NVD link : CVE-2025-55263
Mitre link : CVE-2025-55263
CVE.ORG link : CVE-2025-55263
JSON object : View
Products Affected
hcltech
- aftermarket_cloud
CWE
CWE-798
Use of Hard-coded Credentials
