CVE-2025-52615
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-10-12

Last updated on: 2025-10-20

Assigner: HCL Software

Description
HCL Unica Platform is impacted by misconfigured security related HTTP headers. This can lead to less secure browser default treatment for the policies controlled by these headers.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-10-12
Last Modified
2025-10-20
Generated
2026-05-07
AI Q&A
2025-10-12
EPSS Evaluated
2026-05-05
NVD
Affected Vendors & Products
Showing 1 associated CPE
Vendor Product Version / Range
hcltech unica to 25.1.0 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-693 The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?

This vulnerability involves misconfigured security-related HTTP headers in the HCL Unica Platform. Because these headers are not properly set, browsers may apply less secure default policies, potentially reducing the overall security of web interactions with the platform.


How can this vulnerability impact me? :

The impact of this vulnerability is that it may allow browsers to treat the platform's web content with less secure default settings, which could increase the risk of certain web-based attacks or data exposure due to weaker security controls enforced by the browser.


Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70
EPSS Chart