Home

Description

HCL Aftermarket DPC is affected by HTTP Response Splitting vulnerability where in depending on how the web application handles the split response, an attacker may be able to execute arbitrary commands or inject harmful content into the response..

PUBLISHED Reserved 2025-08-12 | Published 2026-03-26 | Updated 2026-03-26 | Assigner HCL




LOW: 3.1CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N

Problem types

CWE-113: Improper Control of HTTP Messages and Headers

Product status

Default status
unaffected

version 1.0.0
affected

References

support.hcl-software.com/...rticle&sysparm_article=KB0129793

cve.org (CVE-2025-55271)

nvd.nist.gov (CVE-2025-55271)

Download JSON