CVE-2024-42175

CVSS 3.1 Score 2.6 of 10 (low)

Details

Published Jan 11, 2025
CWE ID 20

Summary

CVE-2024-42175 is a newly identified vulnerability affecting HCL MyXalytics. The issue stems from weak input validation, allowing the application to accept special characters without proper length validation. This weakness opens the door to potential security threats such as SQL injection, Cross-Site Scripting (XSS), and buffer overflow attacks. Attackers can exploit this flaw to inject malicious code or manipulate data, posing a significant risk to affected systems. Organizations using HCL MyXalytics are strongly advised to apply patches or updates as soon as they become available to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share