Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 04 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech icontrol |
|
| CPEs | cpe:2.3:a:hcltech:icontrol:4.0.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Hcltech
Hcltech icontrol |
Thu, 04 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 04 Jun 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | HCL iControl was affected by Missing Security Headers vulnerability. which lead to cross-site scripting (XSS) attacks by enabling the built-in XSS filtering mechanisms of modern web browsers. | |
| Title | HCL iControl was affected by Missing Security Headers vulnerability. | |
| Weaknesses | CWE-693 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2026-06-04T13:17:17.034Z
Reserved: 2025-06-18T14:00:38.418Z
Link: CVE-2025-52609
Updated: 2026-06-04T13:17:13.808Z
Status : Analyzed
Published: 2026-06-04T12:16:23.880
Modified: 2026-06-04T18:34:41.517
Link: CVE-2025-52609
No data.
OpenCVE Enrichment
Updated: 2026-06-05T10:08:17Z