CVE-2025-62342 MEDIUM

CVE-2025-62342: HCL IntelliOps Event Management is affected by multiple security vulnerabilities.

Vendor Hcl Software
Product IEM
Weakness CWE-613 · Insufficient session expiration
Published August 27, 2026
Last update August 27, 2026

CVSS base score

6.4/10
Attack vector Network
Attack complexity High
Privileges required Low
User interaction Required
Confidentiality High
Integrity None

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:H

What the vulnerability does

01Description

HCL IntelliOps Event Management (IEM) is affected by a Session Deletion Vulnerability. It may allow improper handling of user sessions, resulting in sessions not being fully terminated after logout or deletion.

Key dates

02Disclosure timeline

August 27, 2026 CVE published
August 27, 2026 Record updated