HCL iAutomate includes hardcoded credentials which may result in potential exposure of confidential data if intercepted or accessed by unauthorized parties.
History

Thu, 24 Jul 2025 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 24 Jul 2025 20:45:00 +0000

Type Values Removed Values Added
Description HCL iAutomate includes hardcoded credentials which may result in potential exposure of confidential data if intercepted or accessed by unauthorized parties.
Title HCL iAutomate is affected by hardcoded credentials
Weaknesses CWE-798
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published: 2025-07-24T20:40:43.677Z

Updated: 2025-07-25T01:32:44.278Z

Reserved: 2025-04-01T18:46:19.517Z

Link: CVE-2025-31953

cve-icon Vulnrichment

Updated: 2025-07-24T20:45:00.784Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-07-24T21:15:28.373

Modified: 2025-07-25T15:29:19.837

Link: CVE-2025-31953

cve-icon Redhat

No data.