Server-Side Input Validation Flaws in HCL AION Application
CVE-2025-62315

3.4LOW

Key Information:

Status
Vendor
CVE Published:
13 August 2026

What is CVE-2025-62315?

HCL AION is impacted by a significant vulnerability where certain input fields lack adequate server-side input validation. As a result, the application may inadvertently accept unexpected or malicious input, leading to potential unintended behaviors or security implications in specific scenarios. It is crucial for users and administrators of HCL AION to be aware of this issue and implement appropriate measures to mitigate risks.

Affected Version(s)

AION v2.1.0

References

CVSS V3.1

Score:
3.4
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.