CVE-2024-42176

HCL MyXalytics is affected by concurrent login vulnerability. A concurrent login vulnerability occurs when simultaneous active sessions are allowed for a single credential allowing an attacker to potentially obtain access to a user's account or sensitive information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:dryice_myxalytics:6.4:*:*:*:*:*:*:*

History

16 May 2025, 13:45

Type Values Removed Values Added
Summary
  • (es) HCL MyXalytics se ve afectado por una vulnerabilidad de inicio de sesión simultáneo. Esta vulnerabilidad se produce cuando se permiten sesiones activas simultáneas con una sola credencial, lo que permite a un atacante acceder a la cuenta o información confidencial de un usuario.
References () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119919 - () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0119919 - Vendor Advisory
CPE cpe:2.3:a:hcltech:dryice_myxalytics:6.4:*:*:*:*:*:*:*
cpe:2.3:a:hcltech:dryice_myxalytics:6.3:*:*:*:*:*:*:*
First Time Hcltech dryice Myxalytics
Hcltech

19 Mar 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-19 15:15

Updated : 2025-05-16 13:45


NVD link : CVE-2024-42176

Mitre link : CVE-2024-42176

CVE.ORG link : CVE-2024-42176


JSON object : View

Products Affected

hcltech

  • dryice_myxalytics
CWE
CWE-307

Improper Restriction of Excessive Authentication Attempts