AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2025-52640

MEDIUM · CVSS 4.7 EPSS 0.09%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

HCL AION's shared storage architecture lacks adequate access separation, allowing processes to potentially access or modify files outside their intended scope. This vulnerability could lead to unintended behavior or security impacts, particularly in environments where multiple components interact. Organizations using HCL AION should prioritize addressing this issue to mitigate risks associated with unauthorized data access and integrity violations.

CVE
CVE-2025-52640
Severity
MEDIUM
CVSS
4.7
EPSS
0.09%

Original NVD Description

HCL AION is affected by a vulnerability where the shared storage used by product components is architected without sufficient access separation. Processes sharing the storage may be able to access or modify files beyond their intended scope, potentially resulting in unintended behavior or security impact under certain conditions.