Impact
HCL IntelliOps Event Management (IEM) contains a race condition that creates a timing window during which an attacker can alter a resource. Triggering this flaw can lead to unpredictable application behavior, potentially corrupting data or disrupting service availability.
Affected Systems
The vulnerability affects HCL Software’s IntelliOps Event Management (IEM). No specific product versions are listed, so all deployments of IEM are considered potentially impacted.
Risk and Exploitability
The CVSS score of 5.9 denotes moderate severity. The EPSS score is not available, and the vulnerability is not currently listed in CISA’s KEV catalog, suggesting a lower likelihood of widespread exploitation. The description does not specify the required access level, so it is inferred that the attacker would need sufficient privilege within the IEM environment to exploit the race condition, likely via concurrent operations or submission of conflicting resource requests.
OpenCVE Enrichment