HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability. The application transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

Subscriptions

Vendors Products
Hcltech Subscribe
Dryice Myxalytics Subscribe

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-40004 HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability. The application transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 16 May 2025 14:00:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech dryice Myxalytics
CPEs cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*
Vendors & Products Hcltech
Hcltech dryice Myxalytics

Mon, 13 Jan 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Sun, 12 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Description HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability. The application transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Title HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability
Weaknesses CWE-319
References
Metrics cvssV3_1

{'score': 1.6, 'vector': 'CVSS:3.1/AV:P/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2025-01-13T15:13:31.207Z

Reserved: 2024-07-29T21:32:05.157Z

Link: CVE-2024-42181

cve-icon Vulnrichment

Updated: 2025-01-13T15:12:54.058Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-12T22:15:07.120

Modified: 2025-05-16T13:45:05.007

Link: CVE-2024-42181

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses