CVE-2024-42175

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
11/01/2025
Last modified:
16/05/2025

Description

HCL MyXalytics is affected by a weak input validation vulnerability. The application accepts special characters and there is no length validation. This can lead to security vulnerabilities like SQL injection, XSS, and buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*