CVE-2025-55266 - CERT CVE
ID CVE-2025-55266
Sažetak HCL Aftermarket DPC is affected by Session Fixation which allows attacker to takeover the user's session and use it carry out unauthorized transaction behalf of the user.
Reference
CVSS
Base: 5.9
Impact: 4.2
Exploitability:1.6
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH NONE LOW
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:L
Zadnje važnije ažuriranje 26-03-2026 - 20:35
Objavljeno 26-03-2026 - 13:16