← Back to CVE search

CVE-2025-52608

HCL iControl

Description

HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attributes, including Secure and SameSite. And also path is set to root.

CVSS 3.1EPSS 0.098%Risk 0.31
View source
Published
2026-06-04 12:16:23
Affected versions
unknown
Type
Web application
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N