Home

Description

HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability. An attacker can deploy a web server that returns malicious content, and then induce the application to retrieve and process that content.

PUBLISHED Reserved 2024-07-29 | Published 2025-01-11 | Updated 2025-01-13 | Assigner HCL




HIGH: 8.9CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:L

Problem types

CWE-610 Externally Controlled Reference to a Resource in Another Sphere

Product status

Default status
unaffected

6.3
affected

References

support.hcl-software.com/...rticle&sysparm_article=KB0118149

cve.org (CVE-2024-42168)

nvd.nist.gov (CVE-2024-42168)

Download JSON