Unrated severityNVD Advisory· Published Oct 12, 2025· Updated Oct 14, 2025
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR)
CVE-2025-31997
Description
HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
Affected products
2- HCL Software/Unica Centralized Offer Managementv5Range: <=25.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.