CVE-2025-31996

MEDIUM

HCL Unica Platform - Info Disclosure

Title source: llm
STIX 2.1

Description

HCL Unica Platform is affected by unprotected files due to improper access controls.  These files may contain sensitive information such as private or system information that can be exploited by attackers to compromise the application, infrastructure, or users.

Scores

CVSS v3 5.3
EPSS 0.0003
EPSS Percentile 9.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-552
Status published
Products (1)
hcltech/unica < 25.1.0.1
Published Oct 13, 2025
Tracked Since Feb 18, 2026