Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-42168

Опубликовано: 11 янв. 2025
Источник: nvd
CVSS3: 8.9
CVSS3: 9.4
EPSS Низкий

Описание

HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability. An attacker can deploy a web server that returns malicious content, and then induce the application to retrieve and process that content.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*

EPSS

Процентиль: 39%
0.00171
Низкий

8.9 High

CVSS3

9.4 Critical

CVSS3

Дефекты

CWE-610
CWE-918

Связанные уязвимости

CVSS3: 8.9
github
около 1 года назад

HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability. An attacker can deploy a web server that returns malicious content, and then induce the application to retrieve and process that content.

EPSS

Процентиль: 39%
0.00171
Низкий

8.9 High

CVSS3

9.4 Critical

CVSS3

Дефекты

CWE-610
CWE-918