Encryption Flaw in HCL AION Exposes Sensitive Data
CVE-2025-62310

5.4MEDIUM

Key Information:

Status
Vendor
CVE Published:
14 May 2026

What is CVE-2025-62310?

HCL AION has a vulnerability where encryption is not adequately enforced during certain data transmissions, potentially allowing sensitive information to be intercepted or accessed by unauthorized parties. This shortcoming could put user data at risk under specific operational conditions, highlighting the importance of implementing robust encryption measures to safeguard against data breaches.

Affected Version(s)

AION 2.1.0

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.