CVE-2024-42170

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/01/2025
Last modified:
16/05/2025

Description

HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URLs with a session token to access the victim's login session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*