CVE-2025-55264
MEDIUM
NVD
CVSS Score
5.5
Severity
MEDIUM
Published
Mar 26, 2026
Vendor
unknown
Description
HCL Aftermarket DPC is affected by Failure to Invalidate Session on Password Change will allow attacker to access to a session, then they can maintain control over the account despite the password change leading to account takeover.