HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications.
Metrics
Affected Vendors & Products
References
History
Fri, 16 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Hcltech
Hcltech dryice Myxalytics |
|
Weaknesses | CWE-522 | |
CPEs | cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:* | |
Vendors & Products |
Hcltech
Hcltech dryice Myxalytics |
Mon, 13 Jan 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 11 Jan 2025 07:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications. | |
Title | HCL MyXalytics is affected by broken authentication | |
Weaknesses | CWE-287 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2025-01-13T19:25:52.775Z
Reserved: 2024-07-29T21:32:01.610Z
Link: CVE-2024-42172

Updated: 2025-01-13T19:25:42.969Z

Status : Analyzed
Published: 2025-01-11T07:15:08.743
Modified: 2025-05-16T13:47:39.180
Link: CVE-2024-42172

No data.