Weak Password Policy in HCL Aftermarket DPC Exposes User Accounts to Unauthorized Access
CVE-2025-55269

4.2MEDIUM

Key Information:

Vendor
CVE Published:
26 March 2026

What is CVE-2025-55269?

The vulnerability in HCL Aftermarket DPC relates to a weak password policy that allows attackers to easily guess or brute-force passwords. This flaw can lead to unauthorized access to user accounts, compromising sensitive information and integrity of the system. Users are encouraged to review password guidelines and implement stronger authentication measures to mitigate potential breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Aftermarket DPC version 1.0.0

References

CVSS V3.1

Score:
4.2
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.