Untriaged
Permalink
CVE-2025-62299
6.6 MEDIUM
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): High (H)
- Privileges Required (PR): High (H)
- User Interaction (UI): None (N)
- Scope (S): Changed (C)
- Confidentiality (C): High (H)
- Integrity (I): Low (L)
- Availability (A): None (N)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): High (H)
- Modified Privileges Required (MPR): High (H)
- Modified User Interaction (MUI): None (N)
- Modified Confidentiality (MC): High (H)
- Modified Scope (MS): Changed (C)
- Modified Integrity (MI): Low (L)
- Modified Availability (MA): None (N)
Activity log
- Created suggestion
HCL IntelliOps Event Management is affected by multiple security vulnerabilities.
HCL IntelliOps Event Management (IEM) is affected by a least privileges violation which could allow an attacker to access the resource with the elevated privilege that could not be accessed with the attacker's original privileges.
Affected products
IEM
- ==v1.4.0
Matching in nixpkgs
pkgs.riemann
Network monitoring system
pkgs.riemann-dash
JavaScript, websockets-powered dashboard for Riemann
pkgs.riemann-tools
Tools to submit data to Riemann
pkgs.riemann_c_client
C client library for the Riemann monitoring system
pkgs.ibus-engines.uniemoji
Input method (ibus) for entering unicode symbols and emoji by name
pkgs.python313Packages.aliyun-python-sdk-cloud-siem
Module of Aliyun Python SDK (cloud-siem)
pkgs.python314Packages.aliyun-python-sdk-cloud-siem
Module of Aliyun Python SDK (cloud-siem)
Package maintainers
-
@aske Kirill Boltaev <aske@fmap.me>
-
@mwilsoncoding Max Wilson <nixpkgs@maxwilson.dev>
-
@crimeminister Robert Medeiros <robert@crimeminister.org>
-
@nicknovitski Nick Novitski <nixpkgs@nicknovitski.com>
-
@fabaff Fabian Affolter <mail@fabian-affolter.ch>