HCL Aftermarket DPC is affected by Cross Domain Script Include vulnerability where an attacker using external scripts can tamper with the DOM, altering the content or behavior of the application. Malicious scripts can steal cookies or session tokens, leading to session hijacking.
Metrics
Affected Vendors & Products
References
History
Fri, 27 Mar 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcl
Hcl aftermarket Dpc |
|
| Vendors & Products |
Hcl
Hcl aftermarket Dpc |
Thu, 26 Mar 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech aftermarket Cloud |
|
| CPEs | cpe:2.3:a:hcltech:aftermarket_cloud:1.0.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Hcltech
Hcltech aftermarket Cloud |
Thu, 26 Mar 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 26 Mar 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL Aftermarket DPC is affected by Cross Domain Script Include vulnerability where an attacker using external scripts can tamper with the DOM, altering the content or behavior of the application. Malicious scripts can steal cookies or session tokens, leading to session hijacking. | |
| Title | HCL Aftermarket DPC is affected by Cross Domain Script Include vulnerability | |
| Weaknesses | CWE-829 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published: 2026-03-26T12:52:59.260Z
Updated: 2026-03-26T15:01:54.300Z
Reserved: 2025-08-12T07:00:17.741Z
Link: CVE-2025-55273
Updated: 2026-03-26T13:42:38.264Z
Status : Analyzed
Published: 2026-03-26T13:16:26.883
Modified: 2026-03-26T20:30:24.353
Link: CVE-2025-55273
No data.