PT-2026-46184 · Hcl · Icontrol

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2025-52608

CVSS v3.1

3.1

Low

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N
HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attributes, including Secure and SameSite. And also path is set to root.

Fix

Weakness Enumeration

Related Identifiers

CVE-2025-52608

Affected Products

Icontrol