2.6
/ 10
LOW
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N
Description
HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability. CORS misconfigurations includes the exposure of sensitive user information to attackers, unauthorized access to APIs, and possible data manipulation or leakage. If an attacker to exploit CORS misconfiguration, they could steal sensitive data, perform actions on behalf of a legitimate user.
Basic Information
ID
CVE-2025-55274
Source
HCL
Published
Mar 26, 2026 at 12:47
Modified
Mar 26, 2026 at 15:02
Affected Product
Vendor
HCL
Product
Aftermarket DPC
Version
version 1.0.0
Affected Versions
HCL Aftermarket DPC version 1.0.0