CVE-2023-45724

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 3, 2024
Updated: Jan 9, 2024
CWE ID 434

Summary

CVE-2023-45724 is a vulnerability affecting HCL DRYiCE MyXalytics. This issue allows unauthenticated users to upload files to the web application, posing a significant security risk. The lack of user authentication validation enables attackers to potentially upload malicious files, leading to potential data breaches, unauthorized access, or other forms of system compromise. Organizations using this product should apply the recommended patches as soon as possible to mitigate the threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share