Session Fixation Vulnerability in HCL Aftermarket DPC Software
CVE-2025-55266
5.9MEDIUM
What is CVE-2025-55266?
HCL Aftermarket DPC has a session fixation vulnerability that enables attackers to hijack active user sessions. By exploiting this flaw, an attacker can execute unauthorized transactions by impersonating the legitimate user, leading to potential data breaches and financial losses. It is essential for users of HCL Aftermarket DPC to be vigilant and implement necessary security measures to protect against this risk.
Affected Version(s)
Aftermarket DPC version 1.0.0