Information Exposure Vulnerability in HCL Software ZIE for Web
CVE-2025-59873
5.9MEDIUM
What is CVE-2025-59873?
An information exposure vulnerability is present in HCL Software ZIE for Web, where sensitive session tokens and authentication identifiers are transmitted through URL query parameters. This flaw allows an attacker with network access or control over a linked site to potentially hijack user sessions. Affected users may be at risk of unauthorized access or compromise of their sessions due to the exposure of these sensitive identifiers.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ZIE for Web v16
References
CVSS V3.1
Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
