CVE-2025-55251: HCL AION is affected by an Unrestricted File Upload vulnerability
HCL AION is affected by an Unrestricted File Upload vulnerability. This can allow malicious file uploads, potentially resulting in unauthorized code execution or system compromise.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-55251?
CVE-2025-55251 is classified as a high-severity vulnerability due to the potential for unauthorized code execution.
How do I fix CVE-2025-55251?
To fix CVE-2025-55251, implement restrictions on file types and sizes allowed for uploads and ensure proper validation and sanitation of uploaded files.
What impact does CVE-2025-55251 have on HCL AION?
CVE-2025-55251 can lead to unauthorized file uploads, allowing attackers to execute malicious code on the server.
Is HCL AION the only software affected by CVE-2025-55251?
Yes, CVE-2025-55251 specifically affects HCL AION software with the unrestricted file upload vulnerability.
How can I determine if my instance of HCL AION is vulnerable to CVE-2025-55251?
Check if your version of HCL AION allows unrestricted file uploads without adequate validation and controls in place to mitigate risks.