HCL Unica Platform是印度HCL公司的一个先进的企业自动化营销平台。无需人工操作即可处理日常营销任务并捕获最有效的潜在客户。 HCL Unica Platform存在安全漏洞,该漏洞源于安全相关HTTP头配置不当,可能导致浏览器对这些头控制的策略采用较低安全性的默认处理。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | Unica Platform | <= 25.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-52616 | 5.3 MEDIUM | HCL Unica 12.1.10 is affected by an exposure of sensitive information |
| CVE-2025-31992 | 4.6 MEDIUM | HCL MaxAI Assistant is susceptible to a HTML injection vulnerability |
| CVE-2025-31997 | 4.2 MEDIUM | HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References |
| CVE-2025-31969 | 4.0 MEDIUM | HCL Unica Platform is impacted by misconfigured Content Security Policy (CSP) |
| CVE-2025-52614 | 3.5 LOW | HCL Unica Platform is affected by a Cookie without HTTPOnly Flag Set vulnerability |
| CVE-2025-31998 | 3.5 LOW | HCL Unica Centralized Offer Management is vulnerable to poor unhandled exceptions which ex |
| CVE-2025-31993 | 3.5 LOW | HCL Unica Centralized Offer Management is vulnerable to a potential Server-Side Request Fo |
No comments yet