CWE-557
3 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-557page 1 of 1
- CVE-2025-55275HIGHCVSS 8.1EG 8.12026-03-26
HCL Aftermarket DPC is affected by Admin Session Concurrency vulnerability using which an attacker can exploit concurrent sessions to hijack or impersonate an admin user.
- CVE-2025-62343LOWCVSS 3.1EG 3.12026-08-27
HCL IntelliOps Event Management (IEM) is affected by an Admin Session Concurrency Vulnerability. it may allows user sessions to remain active after logout or session deletion.
- CVE-2026-21806LOWCVSS 3.1EG 3.12026-09-18
HCL BigFix Service Management is affected by an Administrative Session Concurrency vulnerability. The application allows multiple simultaneous authenticated sessions for the same administrative account, which could enable an unauthorized a…
Map vulnerabilities like CWE-557 to your infrastructure
EchelonGraph correlates every CVE — across CWE-557 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →