ZeroHour

CVE-2025-55261

CVSS 3.1
9.8 critical
EPSS
<1%p25
Published
()
Modified
Description

HCL Aftermarket DPC is affected by Missing Functional Level Access Control which will allow attacker to escalate his privileges and may compromise the application and may steal and manipulate the data.

Vendors
hcltech
Products
aftermarket cloud
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.