Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-35141

Опубликовано: 16 июл. 2026
Источник: nvd
CVSS3: 2.6
CVSS3: 5.3
EPSS Низкий

Описание

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:hcltech:dfxanalytics:*:*:*:*:*:*:*:*
Версия до 3.0 (включая)

EPSS

Процентиль: 9%
0.00192
Низкий

2.6 Low

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-294

Связанные уязвимости

CVSS3: 2.6
github
26 дней назад

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

EPSS

Процентиль: 9%
0.00192
Низкий

2.6 Low

CVSS3

5.3 Medium

CVSS3

Дефекты

CWE-294