Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h99c-49qw-qq9r

Опубликовано: 11 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications.

HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications.

EPSS

Процентиль: 43%
0.00208
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-287
CWE-522

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

HCL MyXalytics is affected by broken authentication. It allows attackers to compromise keys, passwords, and session tokens, potentially leading to identity theft and system control. This vulnerability arises from poor configuration, logic errors, or software bugs and can affect any application with access control, including databases, network infrastructure, and web applications.

EPSS

Процентиль: 43%
0.00208
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-287
CWE-522