ZeroHour

CVE-2025-55271

CVSS 3.1
8.8 high
EPSS
<1%p25
Published
()
Modified
Description

HCL Aftermarket DPC is affected by HTTP Response Splitting vulnerability where in depending on how the web application handles the split response, an attacker may be able to execute arbitrary commands or inject harmful content into the response..

Vendors
hcltech
Products
aftermarket cloud
Weakness
CWE-113
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.