CVE-2025-62305
- EPSS 0.11%
- Veröffentlicht 14.05.2026 16:17:33
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where certain operations may trigger out-of-band interactions, potentially resulting in unintended disclosure of sensitive information. Such behaviour may allow exposure of data to external systems under specif...
CVE-2025-62317
- EPSS 0.12%
- Veröffentlicht 14.05.2026 16:13:34
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where sensitive information may be included in URL parameters. Passing sensitive data in URLs may expose it through browser history, logs, or intermediary systems, potentially leading to unintended information ...
CVE-2025-62308
- EPSS 0.11%
- Veröffentlicht 14.05.2026 16:12:39
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where sensitive backend infrastructure details may be exposed. Exposure of such information could reveal internal system architecture or configuration details, which may potentially assist in further analysis o...
CVE-2025-62309
- EPSS 0.12%
- Veröffentlicht 14.05.2026 16:10:49
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where auto-complete functionality is enabled for certain input fields. This may allow sensitive information to be stored in the browser, potentially leading to unintended exposure under specific conditions.
- EPSS 0.14%
- Veröffentlicht 14.05.2026 16:09:35
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where basic authorization tokens are used for authentication. Use of basic authorization mechanisms may expose credentials to potential interception or misuse, especially if not combined with secure transmissio...
CVE-2025-62316
- EPSS 0.11%
- Veröffentlicht 14.05.2026 16:08:59
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where certain security-related HTTP response headers are not properly configured. Absence of these headers may reduce the effectiveness of browser-based security controls and could expose the application to lim...
CVE-2025-62313
- EPSS 0.18%
- Veröffentlicht 14.05.2026 16:07:54
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where adequate protections against brute-force attempts are not enforced. This may allow repeated authentication attempts, potentially leading to unauthorized access or account compromise under certain conditio...
CVE-2025-62311
- EPSS 0.08%
- Veröffentlicht 14.05.2026 16:06:57
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where backend service details may be transmitted over insecure HTTP channels. This may expose sensitive information to potential interception or unauthorized access during transmission under certain conditions
CVE-2025-62310
- EPSS 0.05%
- Veröffentlicht 14.05.2026 16:05:42
- Zuletzt bearbeitet 14.05.2026 17:22:46
HCL AION is affected by a vulnerability where encryption is not enforced for certain data transmissions or operations. This may expose sensitive information to potential interception or unauthorized access under specific conditions.
CVE-2025-52641
- EPSS 0.12%
- Veröffentlicht 15.04.2026 08:47:33
- Zuletzt bearbeitet 01.05.2026 12:37:29
HCL AION is affected by a vulnerability where certain system behaviours may allow exploration of internal filesystem structures. Exposure of such information may provide insights into the underlying environment, which could potentially aid in further...