Unauthorized Access Vulnerability in HCL MyXalytics by HCL Software
CVE-2024-42178

2.5LOW

Key Information:

Vendor
HCL Software Software
Status
HCL Software Myxalytics
Vendor
CVE Published:
17 April 2025

Summary

HCL MyXalytics is impacted by a URL access vulnerability, allowing unauthenticated users to gain unauthorized access to potentially sensitive information. This flaw raises significant security concerns, as it could lead to the misuse, manipulation, or unauthorized distribution of confidential data. Organizations utilizing HCL MyXalytics should assess their systems for potential exposure and implement measures to mitigate the risks associated with this vulnerability.

Affected Version(s)

HCL MyXalytics 6.3

References

CVSS V3.1

Score:
2.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.