Use of Vulnerable Versions in HCL Aftermarket DPC by HCL Software
CVE-2025-55277

2.6LOW

Key Information:

Vendor
CVE Published:
26 March 2026

What is CVE-2025-55277?

HCL Aftermarket DPC is susceptible to an exploit due to the use of outdated software versions. Attackers can leverage publicly available exploits to craft attacks against the application, potentially compromising its integrity and the security of associated systems. It is essential for organizations to update to the latest versions and implement security patches to mitigate this risk effectively.

Affected Version(s)

Aftermarket DPC version 1.0.0

References

CVSS V3.1

Score:
2.6
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.