HCL DRYiCE MyXalytics is impacted by an insecure SQL interface vulnerability, potentially giving an attacker the ability to execute custom SQL queries. A malicious user can run arbitrary SQL commands including changing system configuration.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-55148 | HCL DRYiCE MyXalytics is impacted by an insecure SQL interface vulnerability, potentially giving an attacker the ability to execute custom SQL queries. A malicious user can run arbitrary SQL commands including changing system configuration. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 08 May 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hcltech
Hcltech dryice Myxalytics |
|
| CPEs | cpe:2.3:a:hcltech:dryice_myxalytics:5.9:*:*:*:*:*:*:* cpe:2.3:a:hcltech:dryice_myxalytics:6.0:*:*:*:*:*:*:* cpe:2.3:a:hcltech:dryice_myxalytics:6.1:*:*:*:*:*:*:* cpe:2.3:a:hcltech:dryice_myxalytics:6.2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Hcltech
Hcltech dryice Myxalytics |
Mon, 28 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: HCL
Published:
Updated: 2024-10-28T19:01:15.218Z
Reserved: 2023-12-07T03:55:55.605Z
Link: CVE-2023-50347
Updated: 2024-08-02T22:16:46.341Z
Status : Analyzed
Published: 2024-04-10T02:15:08.497
Modified: 2025-05-08T18:34:18.523
Link: CVE-2023-50347
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD