Session Fixation Vulnerability in HCL MyXalytics Platform
CVE-2024-42170
6.8MEDIUM
What is CVE-2024-42170?
HCL MyXalytics is susceptible to a session fixation vulnerability, allowing cyber criminals to exploit this flaw by sending specially crafted URLs that include a session token. If a victim unwittingly clicks such a link, an attacker can hijack the user's login session, potentially gaining unauthorized access to sensitive information. This poses a significant risk to user data security, necessitating prompt awareness and mitigation strategies.
Affected Version(s)
DRYiCE MyXalytics 6.3