Session Deletion Vulnerability in HCL IntelliOps Event Management Software
CVE-2025-62342

6.4MEDIUM

Key Information:

Status
Vendor
CVE Published:
27 August 2026

What is CVE-2025-62342?

HCL IntelliOps Event Management faces a session deletion vulnerability that jeopardizes user session integrity. This flaw may lead to improper session handling, wherein user sessions are not adequately terminated following logout or deletion actions. Consequently, sensitive information could be exposed, putting users at risk. It is crucial for organizations using HCL IntelliOps Event Management to assess their security measures, implement necessary patches, and ensure that user sessions are managed securely to mitigate the potential risks associated with this vulnerability.

Affected Version(s)

IEM v1.3 and v1.4

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.