CVE-2024-42177

LOW

Hcltech Dryice Myxalytics - Weak Encryption

Title source: rule
STIX 2.1

Description

HCL MyXalytics is affected by SSL∕TLS Protocol affected with BREACH & LUCKY13 vulnerabilities. Attackers can exploit the weakness in the ciphers to intercept and decrypt encrypted data, steal sensitive information, or inject malicious code into the system.

Scores

CVSS v3 2.6
EPSS 0.0010
EPSS Percentile 27.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-326
Status published
Products (1)
hcltech/dryice_myxalytics 6.3
Published Apr 17, 2025
Tracked Since Feb 18, 2026