Description
HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability. A remote attacker can intercept and alter the contents of the server's HTTP responses before they reach the client application, allowing them to manipulate the authentication or authorization logic to bypass controls and gain unauthorized access to targeted user accounts.
Published: 2026-07-16
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The flaw exposes HCL DFXAnalytics to a remote attacker who can intercept and modify the HTTP responses sent from the server before they reach the client application. By tampering with the response payload, the attacker can alter authentication or authorization logic, thereby bypassing account controls and gaining unauthorized access to targeted user accounts. This enables the compromise of user data confidentiality and integrity and is classified as CWE-294.

Affected Systems

The weakness affects HCL Software’s DFXAnalytics product. No specific version information is available, so any deployed instance of DFXAnalytics could be impacted until further details are released.

Risk and Exploitability

The CVSS score of 5.5 indicates moderate severity, while the EPSS score of <1% suggests a very low likelihood of exploitation and the flaw is not listed in CISA KEV. The attack is remote over the network, requiring an attacker to position themselves to intercept or modify traffic between the DFXAnalytics server and client. In environments where HTTP traffic can be monitored or altered—such as unencrypted connections or poorly segmented networks—the vulnerability could be exploited, making timely patching advisable.

Generated by OpenCVE AI on July 31, 2026 at 01:57 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest HCL Software DFXAnalytics patch that addresses the response manipulation flaw.
  • Ensure all traffic to and from the DFXAnalytics server uses TLS and disable unencrypted HTTP endpoints.
  • Restrict access to the DFXAnalytics server by segmenting it into an internal network, limiting ingress to trusted sources, and monitoring for suspicious response modifications.

Generated by OpenCVE AI on July 31, 2026 at 01:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 28 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Hcltech
Hcltech dfxanalytics
Vendors & Products Hcltech
Hcltech dfxanalytics

Thu, 16 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 16 Jul 2026 13:30:00 +0000

Type Values Removed Values Added
Description HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability. A remote attacker can intercept and alter the contents of the server's HTTP responses before they reach the client application, allowing them to manipulate the authentication or authorization logic to bypass controls and gain unauthorized access to targeted user accounts.
Title HCL DFXAnalytics is affected by an Account Takeover via Response Manipulation vulnerability.
Weaknesses CWE-294
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L'}


Subscriptions

Hcltech Dfxanalytics
cve-icon MITRE

Status: PUBLISHED

Assigner: HCL

Published:

Updated: 2026-07-16T13:44:39.518Z

Reserved: 2026-06-22T13:38:32.648Z

Link: CVE-2026-56453

cve-icon Vulnrichment

Updated: 2026-07-16T13:42:35.316Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-31T02:00:05Z

Weaknesses
  • CWE-294

    Authentication Bypass by Capture-replay