CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.5. See the original NVD description below for full technical details.
CVE
CVE-2025-55264
Severity
MEDIUM
CVSS
5.5
EPSS
0.12%
Original NVD Description
HCL Aftermarket DPC is affected by Failure to Invalidate Session on Password Change will allow attacker to access to a session, then they can maintain control over the account despite the password change leading to account takeover.
Related CVEs
Other vulnerabilities affecting the same vendor(s)