CVE-2025-52640: HCL AION is affected by multiple security vulnerabilities.
HCL AION is affected by a vulnerability where the shared storage used by product components is architected without sufficient access separation. Processes sharing the storage may be able to access or modify files beyond their intended scope, potentially resulting in unintended behavior or security impact under certain conditions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52640?
The severity of CVE-2025-52640 is medium with a CVSS score of 4.7.
How do I fix CVE-2025-52640?
To fix CVE-2025-52640, ensure proper access controls are implemented for shared storage among product components.
What are the potential risks associated with CVE-2025-52640?
The potential risks include unauthorized access or modification of files which may lead to unintended behavior or security issues.
Which software is affected by CVE-2025-52640?
CVE-2025-52640 affects HCL AION software.
What does CVE-2025-52640 imply about shared storage in HCL AION?
CVE-2025-52640 implies that the shared storage in HCL AION lacks sufficient access separation, creating vulnerabilities in security.