Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

DRYiCE MyXalytics — Vulnerabilities & Security Advisories 24

All 24 CVE vulnerabilities found in DRYiCE MyXalytics, with AI-generated Chinese analysis, references, and POCs.

This page documents known vulnerabilities within the DRYiCE MyXalytics product, categorized under standard weakness types and tagged for reference. It serves as a centralized repository for tracking security issues specific to this data analysis platform, aggregating reports from various sources to provide a comprehensive view of its risk landscape. The collection includes a wide range of vulnerability classifications, such as cross-site scripting, injection flaws, improper access control, and logic errors that may lead to data exposure or denial of service. The data spans from the product's initial release phases through recent updates, covering a multi-year period to illustrate the evolution of security findings. By compiling these records, the page captures both critical high-severity incidents and lower-impact configuration issues, ensuring a thorough historical context for security analysts and developers. Visitors to this page can effectively track the vendor’s advisory history to understand how quickly and effectively patches are deployed for reported issues. Users can also gain a deeper understanding of specific weakness classes prevalent in the product’s codebase, identifying patterns that may indicate systemic architectural problems. Additionally, individuals can look up the complete vulnerability history of DRYiCE MyXalytics to assess its security posture over time, aiding in risk assessments, compliance audits, and decision-making processes for deployment or remediation strategies. This structured approach allows stakeholders to move beyond isolated incident reports and view the broader security trajectory of the software.

Vendor: HCL Software

CVE IDTitleCVSSSeverityPublished
CVE-2024-42181 HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability CWE-319 1.6 Low2025-01-12
CVE-2024-42180 HCL MyXalytics is affected by a malicious file upload vulnerability CWE-434 1.6 Low2025-01-12
CVE-2024-42179 HCL MyXalytics is affected by sensitive information disclosure vulnerability CWE-200 2.0 Low2025-01-12
CVE-2024-42175 HCL MyXalytics is affected by a weak input validation vulnerability CWE-20 2.6 Low2025-01-11
CVE-2024-42174 HCL MyXalytics is affected by username enumeration vulnerability CWE-204 3.7 Low2025-01-11
CVE-2024-42173 HCL MyXalytics is affected by an improper password policy implementation vulnerability CWE-521 4.8 Medium2025-01-11
CVE-2024-42172 HCL MyXalytics is affected by broken authentication CWE-287 5.3 Medium2025-01-11
CVE-2024-42171 HCL MyXalytics is affected by insufficient session expiration CWE-384 6.4 Medium2025-01-11
CVE-2024-42170 HCL MyXalytics is affected by a session fixation vulnerability CWE-384 6.8 Medium2025-01-11
CVE-2024-42169 HCL MyXalytics is affected by insecure direct object references CWE-639 7.1 High2025-01-11
CVE-2024-42168 HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability CWE-610 8.9 High2025-01-11
CVE-2023-50347 Insecure SQL Interface affects HCL DRYiCE MyXalytics 3.7 Low2024-04-10
CVE-2023-45722 Path Traversal Arbitrary File Read affects DRYiCE MyXalytics 8.8 High2024-01-03
CVE-2023-45724 Unauthenticated File Upload affects DRYiCE MyXalytics 8.2 High2024-01-03
CVE-2023-45723 Path Traversal which allows file upload capability affects DRYiCE MyXalytics 7.6 High2024-01-03
CVE-2023-50341 Improper Access Control affects DRYiCE MyXalytics 7.6 High2024-01-03
CVE-2023-50342 Insecure Direct Object Reference (IDOR) affects DRYiCE MyXalytics 7.1 High2024-01-03
CVE-2023-50343 Improper Access Control (Controller APIs) affects DRYiCE MyXalytics 8.3 High2024-01-03
CVE-2023-50344 Unauthenticated File Downloads affect DRYiCE MyXalytics 5.4 Medium2024-01-03
CVE-2023-50345 Open Redirect affects DRYiCE MyXalytics 3.7 Low2024-01-03
CVE-2023-50346 An information disclosure affects DRYiCE MyXalytics 3.1 Low2024-01-03
CVE-2023-50348 Improper Error Handling affects DRYiCE MyXalytics 3.1 Low2024-01-03
CVE-2023-50350 A broken cryptographic algorithm impacts MyXalytics 8.2 High2024-01-03
CVE-2023-50351 Insecure key rotation affects MyXalytics 8.2 High2024-01-03

All 24 known CVE vulnerabilities affecting DRYiCE MyXalytics with full Chinese analysis, references, and POCs where available.