← Back

CVE-2025-52608

nvd nist
Published: Jun 4, 2026Modified: Jul 22, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attributes, including Secure and SameSite. And also path is set to root.

Affected (1)

Products: Hcltech: Icontrol
1 product
Icontrol
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 4.0.0

Timeline

No history available yet.