CVE-2025-62306
Received Received - Intake

Information Omission in HCL IntelliOps Event Management

Vulnerability report for CVE-2025-62306, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-20

Last updated on: 2026-08-20

Assigner: HCL Software

Description

HCL IntelliOps Event Management (IEM) is affected by information omission. The lack of information breaks auditability and observability of a workflow. if an attacker were to gain access to the application, the insufficient logging could hinder incident response.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-20
Last Modified
2026-08-20
Generated
2026-08-20
AI Q&A
2026-08-20
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
hcl intelliops_event_management *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-221 The product does not record, or improperly records, security-relevant information that leads to an incorrect decision or hampers later analysis.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

HCL IntelliOps Event Management (IEM) has an information omission vulnerability. This means the system does not log enough details about workflows, making it hard to track or audit actions. If an attacker gains access, the lack of sufficient logging could slow down or complicate incident response efforts.

Impact Analysis

This vulnerability could allow attackers to perform actions without leaving clear traces in logs. For users, it means slower detection of breaches, difficulty investigating incidents, and potential compliance violations due to poor audit trails.

Compliance Impact

Insufficient logging can lead to non-compliance with GDPR, HIPAA, and other regulations that require detailed audit trails for security incidents. Organizations may face penalties for failing to maintain proper records of data access or breaches.

Mitigation Strategies

Enable detailed logging in HCL IntelliOps Event Management to ensure auditability and observability of workflows. Review and enhance access controls to prevent unauthorized access to the application.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-62306. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart