Vulnerabilities > Hcltech > Dryice Myxalytics > 6.0

DATE CVE VULNERABILITY TITLE RISK
2024-01-03 CVE-2023-45722 Path Traversal vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by path traversal arbitrary file read vulnerability because it uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory.
network
low complexity
hcltech CWE-22
critical
9.8
2024-01-03 CVE-2023-45723 Path Traversal vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by path traversal vulnerability which allows file upload capability.
network
low complexity
hcltech CWE-22
critical
9.8
2024-01-03 CVE-2023-45724 Unrestricted Upload of File with Dangerous Type vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics product is impacted by unauthenticated file upload vulnerability.
network
low complexity
hcltech CWE-434
critical
9.8
2024-01-03 CVE-2023-50341 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by Improper Access Control (Obsolete web pages) vulnerability.
network
low complexity
hcltech
7.5
2024-01-03 CVE-2023-50342 Authorization Bypass Through User-Controlled Key vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Insecure Direct Object Reference (IDOR) vulnerability.
network
low complexity
hcltech CWE-639
4.3
2024-01-03 CVE-2023-50343 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability.
network
low complexity
hcltech
6.5
2024-01-03 CVE-2023-50344 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by improper access control (Unauthenticated File Download) vulnerability.
network
low complexity
hcltech
5.4
2024-01-03 CVE-2023-50345 Open Redirect vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Open Redirect vulnerability which could allow an attacker to redirect users to malicious sites, potentially leading to phishing attacks or other security threats.
network
low complexity
hcltech CWE-601
6.1
2024-01-03 CVE-2023-50346 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an information disclosure vulnerability.
network
low complexity
hcltech
4.3
2024-01-03 CVE-2023-50348 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an improper error handling vulnerability.
network
low complexity
hcltech
5.3