Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-50343


HCL DRYiCE MyXalytics is impacted by an Improper Access Control (Controller APIs) vulnerability. Certain API endpoints are accessible to Customer Admin Users that can allow access to sensitive information about other users.


Published

2024-01-03T03:15:11.210

Last Modified

2025-06-18T16:15:22.893

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.3 (HIGH)

Weaknesses
  • Type: Primary
    NVD-CWE-Other
  • Type: Secondary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application hcltech dryice_myxalytics 5.9 Yes
Application hcltech dryice_myxalytics 6.0 Yes
Application hcltech dryice_myxalytics 6.1 Yes

References