Vulnerabilities
Vulnerable Software
HCL MyXalytics is affected by an improper password policy implementation vulnerability. Weak passwords and lack of account lockout policies allow attackers to guess or brute-force passwords if the username is known.
CVSS Score
4.8
EPSS Score
0.001
Published
2025-01-11
HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URLs with a session token to access the victim's login session.
CVSS Score
6.8
EPSS Score
0.001
Published
2025-01-11
HCL MyXalytics is affected by out-of-band resource load (HTTP) vulnerability. An attacker can deploy a web server that returns malicious content, and then induce the application to retrieve and process that content.
CVSS Score
8.9
EPSS Score
0.001
Published
2025-01-11
HCL MyXalytics is affected by insecure direct object references. It occurs due to missing access control checks, which fail to verify whether a user should be allowed to access specific data.
CVSS Score
7.1
EPSS Score
0.001
Published
2025-01-11


Contact Us

Shodan ® - All rights reserved