Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3252-v85m-5fq8

Опубликовано: 16 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 2.6

Описание

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

EPSS

Процентиль: 9%
0.00192
Низкий

2.6 Low

CVSS3

Дефекты

CWE-294

Связанные уязвимости

CVSS3: 2.6
nvd
26 дней назад

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

EPSS

Процентиль: 9%
0.00192
Низкий

2.6 Low

CVSS3

Дефекты

CWE-294