9.1
CVE-2023-50351
- EPSS 0.04%
- Published 03.01.2024 02:15:44
- Last modified 18.06.2025 16:15:23
- Source psirt@hcl.com
- Teams watchlist Login
- Open Login
HCL DRYiCE MyXalytics is impacted by the use of an insecure key rotation mechanism which can allow an attacker to compromise the confidentiality or integrity of data.
Data is provided by the National Vulnerability Database (NVD)
Hcltech ≫ Dryice Myxalytics Version5.9
Hcltech ≫ Dryice Myxalytics Version6.0
Hcltech ≫ Dryice Myxalytics Version6.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.104 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
|
psirt@hcl.com | 8.2 | 3.9 | 4.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
|
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.