← back
CVE-2025-55268mediumCWE-799

HCL Aftermarket DPC is affected by Spamming Vulnerability

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.3epss 0.3%
exploitation probability
0.3%top 81% of all CVEs
observed exploitation
nono source reports it
In short

HCL Aftermarket DPC allows attackers to send excessive spam messages that can overload the server, causing it to become slow or unavailable for legitimate users.

Technical detail

The application lacks rate limiting or input validation controls (CWE-799), allowing unauthenticated or low-privileged actors to flood the server with requests, exhausting bandwidth and CPU resources and triggering a denial-of-service condition.

Summary generated and translated by AI from the official description.
HCL Aftermarket DPC is affected by Spamming Vulnerability which can allow the actor to excessive spamming can consume server bandwidth and processing resources which may lead to Denial of Service.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Affected products
HCL · Aftermarket DPC