HCL AION is affected by an Unrestricted File Upload vulnerability. This can allow malicious file uploads, potentially resulting in unauthorized code execution or system compromise.
History

Mon, 19 Jan 2026 18:00:00 +0000

Type Values Removed Values Added
Description HCL AION is affected by an Unrestricted File Upload vulnerability. This can allow malicious file uploads, potentially resulting in unauthorized code execution or system compromise.
Title HCL AION is affected by an Host Header Injection vulnerability
Weaknesses CWE-644
References
Metrics cvssV3_1

{'score': 2.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2026-01-19T17:49:52.166Z

Reserved: 2025-06-18T14:03:06.891Z

Link: CVE-2025-52660

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-01-19T18:16:03.797

Modified: 2026-01-19T18:16:03.797

Link: CVE-2025-52660

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.