CVE-2025-55265

HCL Aftermarket DPC is affected by File Discovery which allows attacker could exploit this issue to read sensitive files present in the system and may use it to craft further attacks.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*

History

26 Mar 2026, 20:16

Type Values Removed Values Added
CPE cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*
First Time Hcltech
Hcltech aftermarket Cloud
References () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793 - Vendor Advisory

26 Mar 2026, 13:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-26 13:16

Updated : 2026-03-26 20:16


NVD link : CVE-2025-55265

Mitre link : CVE-2025-55265

CVE.ORG link : CVE-2025-55265


JSON object : View

Products Affected

hcltech

  • aftermarket_cloud
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor