CVE-2023-45724
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Jan 3, 2024
Updated: Jan 9, 2024
CWE ID 434
Summary
CVE-2023-45724 is a vulnerability affecting HCL DRYiCE MyXalytics. This issue allows unauthenticated users to upload files to the web application, posing a significant security risk. The lack of user authentication validation enables attackers to potentially upload malicious files, leading to potential data breaches, unauthorized access, or other forms of system compromise. Organizations using this product should apply the recommended patches as soon as possible to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- HCL Technologies Ltd.