|
941
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION versión 2 está afectado por una vulnerabilidad de revelación de errores técnicos. Esto puede exponer detalles técnicos sensibles, lo que podría resultar en revelación de información o facili…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2025-55250
|
2026-04-26 03:04 |
2026-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
942
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION version 2 is affected by a JWT Token Expiry Too Long vulnerability. This may increase the risk of token misuse, potentially resulting in unauthorized access if the token is compromised.
|
CWE-613
Insufficient Session Expiration
|
CVE-2025-52661
|
2026-04-26 03:04 |
2026-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
943
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION versión 2 está afectada por una vulnerabilidad de JWT Token Expiry Too Long. Esto puede aumentar el riesgo de uso indebido del token, lo que podría resultar en acceso no autorizado si el tok…
|
CWE-613
Insufficient Session Expiration
|
CVE-2025-52661
|
2026-04-26 03:04 |
2026-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
944
|
7.5 |
HIGH
Network
|
hcltech
|
aion
|
HCL AION version 2 is affected by a Cacheable HTTP Response vulnerability. This may lead to unintended storage of sensitive or dynamic content, potentially resulting in unauthorized access or informa…
|
CWE-525
Use of Web Browser Cache Containing Sensitive Information
|
CVE-2025-52659
|
2026-04-26 03:04 |
2026-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
945
|
7.5 |
HIGH
Network
|
hcltech
|
aion
|
HCL AION versión 2 está afectada por una vulnerabilidad de respuesta HTTP cacheable. Esto puede llevar al almacenamiento no intencionado de contenido sensible o dinámico, lo que podría resultar en ac…
|
CWE-525
Use of Web Browser Cache Containing Sensitive Information
|
CVE-2025-52659
|
2026-04-26 03:04 |
2026-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
946
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION is affected by a vulnerability where certain identifiers may be predictable in nature. Predictable identifiers may allow an attacker to infer or guess system-generated values, potentially le…
|
CWE-200
Information Exposure
|
CVE-2025-52649
|
2026-04-26 03:04 |
2026-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
947
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION se ve afectado por una vulnerabilidad donde ciertos identificadores pueden ser predecibles por naturaleza. Los identificadores predecibles pueden permitir a un atacante inferir o adivinar va…
|
CWE-200
Information Exposure
|
CVE-2025-52649
|
2026-04-26 03:04 |
2026-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
948
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION is affected by a vulnerability where model packaging and distribution mechanisms may not include sufficient authenticity verification. This may allow the possibility of unverified or modifie…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2025-52645
|
2026-04-26 03:04 |
2026-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
949
|
5.3 |
MEDIUM
Network
|
hcltech
|
aion
|
HCL AION está afectado por una vulnerabilidad donde los mecanismos de empaquetado y distribución de modelos podrían no incluir suficiente verificación de autenticidad. Esto podría permitir la posibil…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2025-52645
|
2026-04-26 03:04 |
2026-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
950
|
7.8 |
HIGH
Local
|
hcltech
|
aion
|
HCL AION is affected by a vulnerability where untrusted file parsing operations are not executed within a properly isolated sandbox environment. This may expose the application to potential security …
|
CWE-693
Protection Mechanism Failure
|
CVE-2025-52643
|
2026-04-26 03:04 |
2026-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|