CVE-2025-52657: HCL MyXalytics is affected by multiple security vulnerabilities.
HCL MyXalytics was affected by Potential DOS Vulnerability. It allows users to input data without any restriction on the number of characters which can impact system performance or availability.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Implement input length restrictions for user-provided data in HCL MyXalytics to prevent denial-of-service via excessively long inputs that can impact system performance or availability.
Event History
Frequently Asked Questions
What access and interaction are required to exploit this issue?
The CVSS vector indicates that exploitation can be performed over the network with low attack complexity, but requires low-level privileges and user interaction.
What is the likely impact if the issue is exploited?
The stated impact is degraded system performance or availability caused by unrestricted input length. The CVSS vector indicates no confidentiality or integrity impact and a low availability impact.