CNNVD-202510-1476 Information

CNNVD ID

CNNVD-202510-1476

CVE-2025-52655

  • CNNVD Published: 2025-10-10

Description (Chinese)

HCL MyXalytics是印度HCL公司的一款分析类软件产品。用于进行数据分析等相关工作。 HCL MyXalytics v6.6版本存在安全漏洞,该漏洞源于加载第三方脚本时未进行完整性检查或验证,可能导致外部代码在应用程序环境中运行,存在数据泄露风险。

Description (English)

HCL MyXalytics is an analytical software product of HCL India. Relevant work such as data analysis. There is a security loophole in version HCL MyXalytics v. 6.6, which arises from the fact that the third-party script was loaded without an integrity check or validation, which may result in an external code operating in the application environment and a risk of data leakage.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

HCL

Published

2025-10-10

Last Modified

2026-02-24

References

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124411

Patch

https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0124411

Share on: