HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability. CORS misconfigurations includes the exposure of sensitive user information to attackers, unauthorized access to APIs, and possible data manipulation or leakage. If an attacker to exploit CORS misconfiguration, they could steal sensitive data, perform actions on behalf of a legitimate user.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Mar 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech aftermarket Cloud |
|
| CPEs | cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Hcltech
Hcltech aftermarket Cloud |
Thu, 26 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Mar 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability. CORS misconfigurations includes the exposure of sensitive user information to attackers, unauthorized access to APIs, and possible data manipulation or leakage. If an attacker to exploit CORS misconfiguration, they could steal sensitive data, perform actions on behalf of a legitimate user. | |
| Title | HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability | |
| Weaknesses | CWE-942 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-03-26T15:02:00.121Z
Reserved: 2025-08-12T07:00:17.742Z
Link: CVE-2025-55274
Updated: 2026-03-26T13:43:54.110Z
Status : Analyzed
Published: 2026-03-26T13:16:27.033
Modified: 2026-03-26T20:19:07.570
Link: CVE-2025-55274
No data.
OpenCVE Enrichment
No data.