PT-2026-46185 · Hcl · Icontrol

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2025-52609

CVSS v3.1

3.7

Low

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
HCL iControl was affected by Missing Security Headers vulnerability. which lead to cross-site scripting (XSS) attacks by enabling the built-in XSS filtering mechanisms of modern web browsers.

Fix

Protection Mechanism Failure

Weakness Enumeration

Related Identifiers

CVE-2025-52609

Affected Products

Icontrol