CVE-2025-0250: Hcltech Intelliops Event Management

Medium severity, CVSS 4.9. EPSS: 0.2% chance of exploitation in the next 30 days.

HCL IEM is affected by an authorization token sent in cookie vulnerability.  A token used for authentication and authorization is being handled in a manner that may increase its exposure to security risks.

Affected products

  • Hcltech Intelliops Event Management: version 1.2 only

Published 2025-07-25. Last modified 2026-06-17.