HCL iControl是印度HCL公司的一个IT基础设施监控与自动化运维平台。 HCL iControl存在安全漏洞,该漏洞源于弱输入验证,在实现架构安全策略时未正确验证输入类型。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-59874 | 8.1 HIGH | HCL Hive Telco Observability is affected by a Required directives missing from the CSP . |
| CVE-2025-52612 | 7.1 HIGH | HCL iControl was affected by Export CSV - CSV Injection vulnerability. |
| CVE-2025-52609 | 3.7 LOW | HCL iControl was affected by Missing Security Headers vulnerability. |
| CVE-2025-52611 | 3.1 LOW | HCL iControl was affected by Unhandled Exception - Stack Trace Disclosure vulnerability |
| CVE-2025-52608 | 3.1 LOW | HCL iControl was affected by Missing Cookie Attributes vulnerability. |
No comments yet