HCL AION Command Injection Vulnerability Allowing Unintended Command Execution

Vulnerability

A command injection vulnerability has been identified in HCL AION version 2.0. This vulnerability allows for unintended execution of commands, which could lead to unauthorized actions on the underlying system.

Impact

Exploitation of this vulnerability could result in unauthorized command execution on the system where HCL AION is installed.

Remediation

Users can upgrade to HCL AION version 2.1.0, which addresses this vulnerability. For assistance with the upgrade process, contact the HCL AION Product support team.

Added: Feb 3, 2026, 7:01 PM
Updated: Feb 3, 2026, 7:01 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
2.8
remediation
0.0
relevance
2.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.