CVE-2024-42179: HCL MyXalytics is affected by sensitive information disclosure vulnerability
Published Jan 12, 2025
·Updated
HCL MyXalytics is affected by sensitive information disclosure vulnerability. The HTTP response header exposes the Microsoft-HTTP API∕2.0 as the server's name & version.
Affected Software
3 affected components
hcltech Dryice Myxalytics=6.3
HCL MyXalytics
Microsoft HTTP API
Event History
Jan 12, 2025
CVE Published
via MITRE·09:46 PM
Data Sourced
via MITRE·09:46 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-42179?
CVE-2024-42179 is classified as a medium severity vulnerability due to sensitive information exposure.
2
How do I fix CVE-2024-42179?
To fix CVE-2024-42179, ensure that the server's HTTP response headers do not disclose sensitive information.
3
What does CVE-2024-42179 affect?
CVE-2024-42179 affects HCL MyXalytics by exposing the Microsoft-HTTP API/2.0 in the server's response header.
4
What type of vulnerability is CVE-2024-42179?
CVE-2024-42179 is a sensitive information disclosure vulnerability.
5
Is CVE-2024-42179 specific to certain versions of HCL MyXalytics?
CVE-2024-42179 does not specify affected versions of HCL MyXalytics, so all versions should be evaluated for the vulnerability.