Description
HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability. Certain API endpoints are accessible to Customer Admin Users that can allow access to sensitive information about other users.
Published: 2024-01-03
Score: 8.3 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-55144 HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability. Certain API endpoints are accessible to Customer Admin Users that can allow access to sensitive information about other users.
History

Wed, 18 Jun 2025 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Hcltech Dryice Myxalytics
cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2025-06-18T15:31:13.364Z

Reserved: 2023-12-07T03:55:55.604Z

Link: CVE-2023-50343

cve-icon Vulnrichment

Updated: 2024-08-02T22:16:46.566Z

cve-icon NVD

Status : Modified

Published: 2024-01-03T03:15:11.210

Modified: 2025-06-18T16:15:22.893

Link: CVE-2023-50343

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses