CVE-2025-31997 - CERT CVE
ID CVE-2025-31997
Sažetak HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
Reference
CVSS
Base: 4.2
Impact: 3.6
Exploitability:0.5
Pristup
VektorSloženostAutentikacija
NETWORK HIGH HIGH
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N
Zadnje važnije ažuriranje 14-10-2025 - 19:36
Objavljeno 12-10-2025 - 03:15