Medium severity5.7NVD Advisory· Published Mar 26, 2026· Updated Jun 17, 2026
CVE-2025-55267
CVE-2025-55267
Description
HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability, allows attacker to upload and execute malicious scripts, gaining full control over the server.
Affected products
3version 1.0.0+ 1 more
- (no CPE)range: version 1.0.0
- (no CPE)
- cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- support.hcl-software.com/csmnvdVendor Advisory
News mentions
0No linked articles in our index yet.