Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hfwr-76cx-qgg7

Опубликовано: 11 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

HCL MyXalytics is affected by insecure direct object references. It occurs due to missing access control checks, which fail to verify whether a user should be allowed to access specific data.

HCL MyXalytics is affected by insecure direct object references. It occurs due to missing access control checks, which fail to verify whether a user should be allowed to access specific data.

EPSS

Процентиль: 30%
0.00113
Низкий

7.1 High

CVSS3

Дефекты

CWE-639

Связанные уязвимости

CVSS3: 7.1
nvd
около 1 года назад

HCL MyXalytics is affected by insecure direct object references. It occurs due to missing access control checks, which fail to verify whether a user should be allowed to access specific data.

EPSS

Процентиль: 30%
0.00113
Низкий

7.1 High

CVSS3

Дефекты

CWE-639