CVE-2025-62340: fallo de gravedad baja en HCL Software iControl
HCL iControl was affected by Inadequate Session Timeout vulnerability
Publicada el
8Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 3.1epss 0.2%
probabilidad de explotación
0.2%top 91% de las CVE
explotación observada
noninguna fuente lo reporta
HCL iControl was affected by Inadequate Session Timeout vulnerability. The vulnerability involves a security risk where a web application fails to automatically terminate user sessions after a period of inactivity
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
Productos afectados
HCL Software · iControlCVEs relacionadas — HCL Software iControl
En el mismo producto, de las más peligrosas a las menos.
CVE-2026-66246HIGHHCL iControl is affected by multiple security vulnerabilitiesEPSS 0.3%CVE-2026-66247MEDIUMCVE-2026-66247EPSS 0.2%CVE-2026-66248LOWHCL iControl is affected by an Improper Error Handling vulnerabilityEPSS 0.2%CVE-2026-66253LOWHCL iControl is affected by a Session Timeout vulnerabilityEPSS 0.1%CVE-2026-66249LOWHCL iControl is affected by a Missing Secure Attribute vulnerabilityEPSS 0.1%