SQL Injection Vulnerability in HCL AION Product
CVE-2025-52637
4.5MEDIUM
What is CVE-2025-52637?
HCL AION is susceptible to an SQL injection vulnerability due to inadequate validation of certain configuration offerings. This weakness may allow an attacker to execute harmful SQL queries, potentially leading to unauthorized database interactions and exposure of sensitive information under specific circumstances. Organizations utilizing HCL AION are advised to review configurations and implement appropriate validation controls to mitigate this risk.
Affected Version(s)
AION 2.0