CVE-2025-52611
Last modified
CVE-2025-52611 is a medium-severity vulnerability rated 4.3/10 on the CVSS scale. HCL iControl v4.0.0 was affected by Unhandled Exception - Stack Trace Disclosure vulnerability. The error occurs due to an undefined property being accessed in the application's JavaScript code. EPSS estimates a 0.16% chance of exploitation in the next 30 days.
Description
HCL iControl v4.0.0 was affected by Unhandled Exception - Stack Trace Disclosure vulnerability. The error occurs due to an undefined property being accessed in the application's JavaScript code. Specifically, the code attempts to read the property dashboard key from an object that is undefined. This issue likely stems from one of the following: A missing or improperly initialized object.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Hcltech | Icontrol | 4.0.0 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2025-52611?
How severe is CVE-2025-52611?
How do I fix CVE-2025-52611?
Are you affected by CVE-2025-52611?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
