Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Aftermarket DPC — Vulnerabilities & Security Advisories 17

All 17 CVE vulnerabilities found in Aftermarket DPC, with AI-generated Chinese analysis, references, and POCs.

This page provides aggregated vulnerability data for the Aftermarket DPC product from its respective vendor, focusing on common software weakness classifications. It collects and organizes security flaws identified in this specific automotive component, covering reports published from early 2018 through mid-2024. The dataset includes a wide range of issues, from remote code execution and privilege escalation to input validation errors and buffer overflows. By centralizing this information, the page serves as a comprehensive resource for security researchers, automotive manufacturers, and compliance officers who need to assess the risk profile of Aftermarket DPC systems. Users can track the vendor's historical advisory patterns to understand their response lifecycle and patching consistency. This collection also allows for a deeper analysis of specific weakness classes, such as those defined in the Common Weakness Enumeration, to identify systemic design flaws rather than isolated incidents. Furthermore, it enables users to look up the complete vulnerability history of the product, offering visibility into how risks have evolved over time. This aggregated view facilitates better supply chain security decisions by highlighting persistent defects and recurring error types within the software architecture. The goal is to provide a clear, factual overview of the security posture of Aftermarket DPC without requiring manual searching across multiple disparate sources. This streamlined access helps stakeholders quickly gauge the maturity of the vendor's security practices and prioritize mitigation efforts for known high-impact flaws.

Vendor: HCL

CVE IDTitleCVSSSeverityPublished
CVE-2025-55261 HCL Aftermarket DPC is affected by Missing Functional Level Access Control CWE-284 8.1 High2026-03-26
CVE-2025-55262 HCL Aftermarket DPC is affected by SQL Injection CWE-798 8.3 High2026-03-26
CVE-2025-55263 HCL Aftermarket DPC is affected by Hardcoded Sensitive Data CWE-798 7.3 High2026-03-26
CVE-2025-55264 HCL Aftermarket DPC is affected by Failure to Invalidate Session on Password Change CWE-613 5.5 Medium2026-03-26
CVE-2025-55265 HCL Aftermarket DPC is affected by File Discovery CWE-200 6.5 Medium2026-03-26
CVE-2025-55266 HCL Aftermarket DPC is affected by Session Fixation CWE-384 5.9 Medium2026-03-26
CVE-2025-55267 HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability CWE-434 5.7 Medium2026-03-26
CVE-2025-55268 HCL Aftermarket DPC is affected by Spamming Vulnerability CWE-799 4.3 Medium2026-03-26
CVE-2025-55269 HCL Aftermarket DPC is affected by Weak Password Policy vulnerability CWE-521 4.2 Medium2026-03-26
CVE-2025-55270 HCL Aftermarket DPC is affected by Improper Input Validation CWE-20 3.5 Low2026-03-26
CVE-2025-55271 HCL Aftermarket DPC is affected by HTTP Response Splitting vulnerability CWE-113 3.1 Low2026-03-26
CVE-2025-55272 HCL Aftermarket DPC is affected by Banner Disclosure vulnerability CWE-200 3.1 Low2026-03-26
CVE-2025-55273 HCL Aftermarket DPC is affected by Cross Domain Script Include vulnerability CWE-829 4.3 Medium2026-03-26
CVE-2025-55274 HCL Aftermarket DPC is affected by Cross-Origin Resource Sharing vulnerability CWE-942 2.6 Low2026-03-26
CVE-2025-55275 HCL Aftermarket DPC is affected by Admin Session Concurrency vulnerability CWE-557 3.7 Low2026-03-26
CVE-2025-55276 HCL Aftermarket DPC is affected by Internal IP Disclosure vulnerability CWE-200 3.1 Low2026-03-26
CVE-2025-55277 HCL Aftermarket DPC is affected by Use of Vulnerable/Outdated Versions vulnerability CWE-1104 2.6 Low2026-03-26

All 17 known CVE vulnerabilities affecting Aftermarket DPC with full Chinese analysis, references, and POCs where available.