CVE-2025-59852 PUBLISHED

HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability

Assigner: HCL
Reserved: 22.09.2025 Published: 06.05.2026 Updated: 06.05.2026

HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attacker to compromise the confidentiality, integrity, and authentication of sensitive information.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
CVSS Score: 3.7

Product Status

Vendor HCL
Product DFXAnalytics
Versions Default: unaffected
  • Version 3.1 and below is affected

References

Problem Types

  • CWE-319: Cleartext Transmission of Sensitive Information CWE