7.1
CVSSv3

CVE-2024-42169

CVSSv4: NA | CVSSv3: 7.1 | CVSSv2: NA | VMScore: 810 | EPSS: 0.00043 | KEV: Not Included
Published: 11/01/2025 Updated: 11/01/2025

Vulnerability Summary

Insecure Direct Object References in HCL MyXalytics: Access Control Gap

HCL MyXalytics has a security issue called insecure direct object references. This happens because access control checks are missing. The system does not properly verify if a user has permission to access certain data.

Vulnerable Product Search on Vulmon Subscribe to Product

hcl software dryice myxalytics