HCL DRYiCE MyXalytics是美国HCL公司的一款统一的报告和仪表板产品。 HCL DRYiCE MyXalytics存在安全漏洞,该漏洞源于容易受到会话固定漏洞的影响。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| HCL Software | DRYiCE MyXalytics | 6.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-42168 | 8.9 HIGH | HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability |
| CVE-2024-42169 | 7.1 HIGH | HCL MyXalytics is affected by insecure direct object references |
| CVE-2024-42171 | 6.4 MEDIUM | HCL MyXalytics is affected by insufficient session expiration |
| CVE-2024-42172 | 5.3 MEDIUM | HCL MyXalytics is affected by broken authentication |
| CVE-2024-42173 | 4.8 MEDIUM | HCL MyXalytics is affected by an improper password policy implementation vulnerability |
| CVE-2024-42174 | 3.7 LOW | HCL MyXalytics is affected by username enumeration vulnerability |
| CVE-2024-42175 | 2.6 LOW | HCL MyXalytics is affected by a weak input validation vulnerability |
No comments yet