CVE-2025-62347 PUBLISHED

Assigner: HCL
Reserved: 10.10.2025 Published: 31.07.2026 Updated: 31.07.2026

HCL iControl was affected by Improper Input Validation vulnerability. It is vulnerable to unexpected system behavior and potential security bypasses. This was caused by an implementation flaw in an architectural security tactic that fails to properly validate whether the received input matches the expected type.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS Score: 4.3

Product Status

Vendor HCL
Product HCL iControl
Versions Default: unaffected
  • Version 4.3.0 and 4.4.0 is affected

References

Problem Types

  • CWE-20 Improper Input Validation CWE