CVE-2024-42173: Hcltech Dryice Myxalytics
Medium severity, CVSS 4.8. EPSS: 0.2% chance of exploitation in the next 30 days.
HCL MyXalytics is affected by an improper password policy implementation vulnerability. Weak passwords and lack of account lockout policies allow attackers to guess or brute-force passwords if the username is known.
Affected products
- Hcltech Dryice Myxalytics: version 6.3 only
Published 2025-01-11. Last modified 2026-06-17.