HCL DRYiCE MyXalytics is impacted by an insecure SQL interface vulnerability, potentially giving an attacker the ability to execute custom SQL queries. A malicious user can run arbitrary SQL commands including changing system configuration.
| Software | From | Fixed in |
|---|---|---|
| hcltech / dryice_myxalytics | 6.1 | 6.1.x |
| hcltech / dryice_myxalytics | 5.9 | 5.9.x |
| hcltech / dryice_myxalytics | 6.0 | 6.0.x |
| hcltech / dryice_myxalytics | 6.2 | 6.2.x |