HCL DFXAnalytics Deprecated Protocol Vulnerability Allowing Data Interception

Vulnerability

A vulnerability exists in HCL DFXAnalytics versions through 3.0, related to the use of outdated TLS protocols 1.0 and 1.1. These legacy protocols are vulnerable to various cryptographic flaws, allowing for the interception and decryption of data. The issue arises because the application still supports these insecure protocols, exposing sensitive information to potential interception.

Impact

Exploitation of this vulnerability could lead to the interception and decryption of data transmitted over the network, allowing attackers to access sensitive information that could be exploited in further attacks.

Remediation

Users can upgrade to HCL DFXAnalytics version 4.1, where this vulnerability has been addressed.

Added: Jul 16, 2026, 2:28 PM
Updated: Jul 16, 2026, 2:28 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
6.6
remediation
0.0
relevance
9.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.