CVE-2025-31971
BaseFortify
Publication date: 2025-08-28
Last updated on: 2025-08-29
Assigner: HCL Software
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| hcl | aiml_solutions | 3.1 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-425 | The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability in HCL AIML Solutions for SX involves improper URL validation, which may allow attackers to perform server-side request forgery (SSRF) attacks. This means attackers can trick the system into making unauthorized network requests, potentially accessing internal services or sensitive information. [1]
How can this vulnerability impact me? :
The vulnerability can allow attackers to make unauthorized network calls from the affected system, potentially exposing internal services or sensitive information. This could lead to data breaches or unauthorized access within the network. [1]