Unauthorized Access Vulnerability in HCL MyXalytics by HCL Software
CVE-2024-42178
2.5LOW
Key Information:
- Vendor
- HCL Software Software
- Status
- HCL Software Myxalytics
- Vendor
- CVE Published:
- 17 April 2025
Summary
HCL MyXalytics is impacted by a URL access vulnerability, allowing unauthenticated users to gain unauthorized access to potentially sensitive information. This flaw raises significant security concerns, as it could lead to the misuse, manipulation, or unauthorized distribution of confidential data. Organizations utilizing HCL MyXalytics should assess their systems for potential exposure and implement measures to mitigate the risks associated with this vulnerability.
Affected Version(s)
HCL MyXalytics 6.3
References
CVSS V3.1
Score:
2.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved