← Volver a CVEs
CVE-2025-52646
LOW2.2
Descripcion
HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to unintended database interactions or limited information exposure under specific conditions.
Detalles CVE
Puntuacion CVSS v3.12.2
SeveridadLOW
Vector CVSSCVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N
Vector de ataqueLOCAL
ComplejidadHIGH
Privilegios requeridosLOW
Interaccion usuarioREQUIRED
Publicado3/16/2026
Ultima modificacion3/18/2026
Fuentenvd
Avistamientos honeypot0
Productos afectados
hcltech:aion
Debilidades (CWE)
CWE-89
Referencias
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.