← Back to CVE List

CVE-2023-45722

Published: 2024-01-03T03:15Z
Last Modified: 2024-11-21T08:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
HCL DRYiCE MyXalytics is impacted by path traversal arbitrary file read vulnerability because it uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory.  The product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory. Potential exploits can completely disrupt or take over the application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt