Unrated severityNVD Advisory· Published Oct 12, 2025· Updated Oct 14, 2025
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR)
CVE-2025-31997
Description
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
Affected products
2- HCL Software/Unica Centralized Offer Managementv5Range: <=25.1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.