CVE Details
Basic Information
| Title | HCL IEM is affected by an improper invalidation of access or JWT token vulnerability |
|---|---|
| Type | cve |
| Published | 2025-07-24T23:19:20.328Z |
| Modified | 2025-07-25T00:37:41.426Z |
Product Information
| Vendor | HCL Software |
|---|---|
| Product | IEM |
| Version | 1.2 |
CVSS Information
| Base Score | 3.3 (LOW) |
|---|---|
| Attack Vector | CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:N |
Affected Products
- HCL Software IEM 1.2
Additional Information
| CWE List | CWE-287 |
|---|---|
| Source | HCL |
Description
HCL IEM is affected by an improper invalidation of access or JWT token vulnerability. A token was not invalidated which may allow attackers to access sensitive data without authorization.