HCL AION Internal Filesystem Path Exposure Vulnerability

Vulnerability

A vulnerability exists in HCL AION Version 2.0, where internal filesystem paths may be unintentionally revealed through application responses or system behavior. This exposure can disclose details about the environment's structure, potentially facilitating targeted attacks or unauthorized information disclosure.

Impact

The vulnerability could lead to exposure of internal paths, allowing attackers to gain insights into the environment's structure, which could be used for further attacks or information disclosure.

Remediation

Users can upgrade to HCL AION version 2.1.2, which addresses this vulnerability. For assistance with the upgrade process, contact the HCL AION support team.

Added: Mar 16, 2026, 3:53 PM
Updated: Mar 16, 2026, 3:53 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
3.0
remediation
0.0
relevance
4.0
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.