VYPR

DRYiCE AEX

by HCL Software

CVEs (4)

  • CVE-2024-30110LowJun 28, 2024
    risk 0.24cvss 3.7epss 0.00

    HCL DRYiCE AEX product is impacted by lack of input validation vulnerability in a particular web application. A malicious script can be injected into a system which can cause the system to behave in unexpected ways.

  • CVE-2024-30109LowJun 28, 2024
    risk 0.24cvss 3.7epss 0.00

    HCL DRYiCE AEX is impacted by a lack of clickjacking protection in the AEX web application. An attacker can use multiple transparent or opaque layers to trick a user into clicking on a button or link on another page than the one intended.

  • CVE-2024-30135LowJun 28, 2024
    risk 0.21cvss 3.3epss 0.00

    HCL DRYiCE AEX is potentially impacted by disclosure of sensitive information in the mobile application when a snapshot is taken.

  • CVE-2024-30111LowJun 28, 2024
    risk 0.21cvss 3.3epss 0.00

    HCL DRYiCE AEX product is impacted by Missing Root Detection vulnerability in the mobile application. The mobile app can be installed in the rooted device due to which malicious users can gain unauthorized access to the rooted devices, compromising security and potentially…