CVE-2024-42178

CVSS 3.1 Score 2.5 of 10 (low)

Details

Published Apr 17, 2025
Updated: Apr 21, 2025
CWE ID 288

Summary

CVE-2024-42178 is a newly identified vulnerability affecting HCL MyXalytics. This issue involves a failure to restrict URL access, allowing unauthenticated users to potentially gain unauthorized access to confidential information. If exploited, this vulnerability could lead to misuse, manipulation, or unauthorized distribution of sensitive data, posing a significant risk to organizations using HCL MyXalytics. The precise consequences of this vulnerability depend on the specific configuration of the affected system and the type of information being accessed. Organizations using HCL MyXalytics are urged to apply the necessary patches or mitigations as soon as possible to prevent potential exploitation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share