CVE-2025-31997

HCL Unica Centralized Offer Management is vulnerable to Insecure Direct Object References (IDOR). An attacker can bypass authorization and access resources in the system directly, for example database records or files.
Configurations

Configuration 1 (hide)

cpe:2.3:a:hcltech:unica_centralized_offer_management:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-10-12 03:15

Updated : 2025-10-29 17:27


NVD link : CVE-2025-31997

Mitre link : CVE-2025-31997

CVE.ORG link : CVE-2025-31997


JSON object : View

Products Affected

hcltech

  • unica_centralized_offer_management
CWE
CWE-639

Authorization Bypass Through User-Controlled Key