Vulnerabilities > Hcltech

DATE CVE VULNERABILITY TITLE RISK
2024-01-03 CVE-2023-45723 Path Traversal vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by path traversal vulnerability which allows file upload capability.
network
low complexity
hcltech CWE-22
critical
9.8
2024-01-03 CVE-2023-45724 Unrestricted Upload of File with Dangerous Type vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics product is impacted by unauthenticated file upload vulnerability.
network
low complexity
hcltech CWE-434
critical
9.8
2024-01-03 CVE-2023-50341 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by Improper Access Control (Obsolete web pages) vulnerability.
network
low complexity
hcltech
7.5
2024-01-03 CVE-2023-50342 Authorization Bypass Through User-Controlled Key vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Insecure Direct Object Reference (IDOR) vulnerability.
network
low complexity
hcltech CWE-639
4.3
2024-01-03 CVE-2023-50343 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability.
network
low complexity
hcltech
6.5
2024-01-03 CVE-2023-50344 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by improper access control (Unauthenticated File Download) vulnerability.
network
low complexity
hcltech
5.4
2024-01-03 CVE-2023-50345 Open Redirect vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an Open Redirect vulnerability which could allow an attacker to redirect users to malicious sites, potentially leading to phishing attacks or other security threats.
network
low complexity
hcltech CWE-601
6.1
2024-01-03 CVE-2023-50346 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an information disclosure vulnerability.
network
low complexity
hcltech
4.3
2024-01-03 CVE-2023-50348 Unspecified vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by an improper error handling vulnerability.
network
low complexity
hcltech
5.3
2024-01-03 CVE-2023-50350 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Hcltech Dryice Myxalytics 5.9/6.0/6.1
HCL DRYiCE MyXalytics is impacted by the use of a broken cryptographic algorithm for encryption, potentially giving an attacker ability to decrypt sensitive information.
network
low complexity
hcltech CWE-327
7.5