HCL MyXalytics is affected by a malicious file upload...
Low severity
Unreviewed
Published
Jan 13, 2025
to the GitHub Advisory Database
Description
Published by the National Vulnerability Database
Jan 12, 2025
Published to the GitHub Advisory Database
Jan 13, 2025
HCL MyXalytics is affected by a malicious file upload vulnerability. The application accepts invalid file uploads, including incorrect content types, double extensions, null bytes, and special characters, allowing attackers to upload and execute malicious files.
References