CVE-2025-31993: HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF)
HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Forgery (SSRF). An attacker can exploit improper input validation by submitting maliciously crafted input to a target application running on a server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-31993?
CVE-2025-31993 has a high severity rating due to its potential for enabling Server-Side Request Forgery (SSRF) attacks.
How do I fix CVE-2025-31993?
To fix CVE-2025-31993, implement proper input validation and sanitation measures in your application.
What systems are affected by CVE-2025-31993?
CVE-2025-31993 affects HCL Unica Centralized Offer Management.
How can an attacker exploit CVE-2025-31993?
An attacker can exploit CVE-2025-31993 by submitting maliciously crafted input, which can lead to unauthorized requests being sent from the server.
What is Server-Side Request Forgery (SSRF) in the context of CVE-2025-31993?
SSRF in the context of CVE-2025-31993 refers to an attack that allows the attacker to make requests from the server to internal resources or external systems.