Home

Description

HCL iControl was affected by Weak Input Validation vulnerability. This weakness is caused during implementation of an architectural security tactic. Received input that is expected to be of a certain type, but it does not validate or incorrectly validates that the input is actually of the expected type.

PUBLISHED Reserved 2025-06-18 | Published 2026-06-04 | Updated 2026-06-04 | Assigner HCL




MEDIUM: 4.3CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Problem types

CWE-209 : Generation of Error Message Containing Sensitive Information.

Product status

Default status
unaffected

4.0.0
affected

References

support.hcl-software.com/...rticle&sysparm_article=KB0131178

cve.org (CVE-2025-52606)

nvd.nist.gov (CVE-2025-52606)

Download JSON