HCL MyXalytics Malicious File Upload Vulnerability Allowing Execution of Uploaded Files

Vulnerability

A vulnerability allowing malicious file uploads has been identified in HCL MyXalytics. The application improperly validates file uploads, accepting invalid files that include incorrect content types, double extensions, null bytes, and special characters. This flaw enables attackers to upload and execute harmful files.

Impact

Exploitation of this vulnerability could lead to the execution of uploaded malicious files, potentially allowing for further attacks or exploitation of the application or underlying system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
4.8
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.