ZeroHour

CVE-2025-55267

CVSS 3.1
9.8 critical
EPSS
<1%p22
Published
()
Modified
Description

HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability, allows attacker to upload and execute malicious scripts, gaining full control over the server.

Vendors
hcltech
Products
aftermarket cloud
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.