CVE-2025-62299 MEDIUM

CVE-2025-62299: HCL IntelliOps Event Management is affected by multiple security vulnerabilities.

Vendor Hcl Software
Product IEM
Weakness CWE-272
Published August 20, 2026
Last update August 27, 2026

CVSS base score

6.6/10
Attack vector Network
Attack complexity High
Privileges required High
User interaction None
Confidentiality High
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:L/A:N

What the vulnerability does

01Description

HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges.

Key dates

02Disclosure timeline

August 20, 2026 CVE published
August 27, 2026 Record updated