HCL DRYiCE MyXalytics is impacted by an insecure SQL interface vulnerability, potentially giving an attacker the ability to execute custom SQL queries. A malicious user can run arbitrary SQL commands including changing system configuration.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-55148 HCL DRYiCE MyXalytics is impacted by an insecure SQL interface vulnerability, potentially giving an attacker the ability to execute custom SQL queries. A malicious user can run arbitrary SQL commands including changing system configuration.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 08 May 2025 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech dryice Myxalytics
CPEs cpe:2.3:a:hcltech:dryice_myxalytics:5.9:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:dryice_myxalytics:6.0:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:dryice_myxalytics:6.1:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:dryice_myxalytics:6.2:*:*:*:*:*:*:*
Vendors & Products Hcltech
Hcltech dryice Myxalytics

Mon, 28 Oct 2024 19:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-89
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2024-10-28T19:01:15.218Z

Reserved: 2023-12-07T03:55:55.605Z

Link: CVE-2023-50347

cve-icon Vulnrichment

Updated: 2024-08-02T22:16:46.341Z

cve-icon NVD

Status : Analyzed

Published: 2024-04-10T02:15:08.497

Modified: 2025-05-08T18:34:18.523

Link: CVE-2023-50347

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.