CVE-2025-52646: HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries.
HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to unintended database interactions or limited information exposure under specific conditions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-52646?
CVE-2025-52646 has been classified with a severity level that indicates a potential risk due to the execution of harmful SQL queries.
How do I fix CVE-2025-52646?
To remediate CVE-2025-52646, ensure adequate validation and restrictions are placed on offering configurations to prevent execution of harmful SQL queries.
What software is affected by CVE-2025-52646?
CVE-2025-52646 affects the HCL AION software platform.
What types of attacks are possible due to CVE-2025-52646?
CVE-2025-52646 may allow attackers to execute arbitrary and potentially harmful SQL queries.
Is there a workaround for CVE-2025-52646?
Implementing proper input validation and configuration restrictions can serve as a temporary workaround for CVE-2025-52646.