PT-2026-28295 · Hcl · Hcl Aftermarket Dpc

Published

2026-03-26

·

Updated

2026-03-29

·

CVE-2025-55270

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HCL Aftermarket DPC (affected versions not specified)
Description The software suffers from Improper Input Validation, enabling an attacker to inject executable code. This could lead to attacks such as Cross-Site Scripting (XSS), SQL Injection, and Command Injection. The vulnerable component allows for the injection of malicious code through inadequate validation of user-supplied data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-55270

Affected Products

Hcl Aftermarket Dpc