{
    "dataType": "CVE_RECORD",
    "dataVersion": "5.2",
    "cveMetadata": {
        "cveId": "CVE-2025-55268",
        "assignerOrgId": "1e47fe04-f25f-42fa-b674-36de2c5e3cfc",
        "state": "PUBLISHED",
        "assignerShortName": "HCL",
        "dateReserved": "2025-08-12T06:59:56.644Z",
        "datePublished": "2026-03-26T13:00:58.637Z",
        "dateUpdated": "2026-03-26T15:01:19.996Z"
    },
    "containers": {
        "cna": {
            "providerMetadata": {
                "orgId": "1e47fe04-f25f-42fa-b674-36de2c5e3cfc",
                "shortName": "HCL",
                "dateUpdated": "2026-03-26T13:00:58.637Z"
            },
            "title": "HCL Aftermarket DPC is affected by Spamming Vulnerability",
            "problemTypes": [
                {
                    "descriptions": [
                        {
                            "lang": "en",
                            "cweId": "CWE-799",
                            "description": "CWE-799: Improper Control of Interaction",
                            "type": "CWE"
                        }
                    ]
                }
            ],
            "affected": [
                {
                    "vendor": "HCL",
                    "product": "Aftermarket DPC",
                    "versions": [
                        {
                            "status": "affected",
                            "version": "version 1.0.0"
                        }
                    ],
                    "defaultStatus": "unaffected"
                }
            ],
            "descriptions": [
                {
                    "lang": "en",
                    "value": "HCL Aftermarket DPC is affected by Spamming Vulnerability which can allow the actor to excessive spamming can consume server bandwidth and processing resources which may lead to Denial of Service.",
                    "supportingMedia": [
                        {
                            "type": "text/html",
                            "base64": false,
                            "value": "HCL Aftermarket DPC is affected by Spamming Vulnerability which can allow the actor to excessive spamming can consume server bandwidth and processing resources which may lead to Denial of Service."
                        }
                    ]
                }
            ],
            "references": [
                {
                    "url": "https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0129793"
                }
            ],
            "metrics": [
                {
                    "format": "CVSS",
                    "scenarios": [
                        {
                            "lang": "en",
                            "value": "GENERAL"
                        }
                    ],
                    "cvssV3_1": {
                        "version": "3.1",
                        "attackVector": "NETWORK",
                        "attackComplexity": "LOW",
                        "privilegesRequired": "NONE",
                        "userInteraction": "REQUIRED",
                        "scope": "UNCHANGED",
                        "confidentialityImpact": "NONE",
                        "integrityImpact": "NONE",
                        "availabilityImpact": "LOW",
                        "baseSeverity": "MEDIUM",
                        "baseScore": 4.3,
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L"
                    }
                }
            ],
            "source": {
                "discovery": "UNKNOWN"
            },
            "x_generator": {
                "engine": "Vulnogram 1.0.0"
            }
        },
        "adp": [
            {
                "metrics": [
                    {
                        "other": {
                            "type": "ssvc",
                            "content": {
                                "timestamp": "2026-03-26T13:40:00.563662Z",
                                "id": "CVE-2025-55268",
                                "options": [
                                    {
                                        "Exploitation": "none"
                                    },
                                    {
                                        "Automatable": "no"
                                    },
                                    {
                                        "Technical Impact": "partial"
                                    }
                                ],
                                "role": "CISA Coordinator",
                                "version": "2.0.3"
                            }
                        }
                    }
                ],
                "title": "CISA ADP Vulnrichment",
                "providerMetadata": {
                    "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
                    "shortName": "CISA-ADP",
                    "dateUpdated": "2026-03-26T15:01:19.996Z"
                }
            }
        ]
    }
}