CVE-2025-59852
Analyzed
Analyzed - Analysis Complete
Insufficient Transport Layer Protection in HCL DFXAnalytics
Publication date: 2026-05-06
Last updated on: 2026-05-07
Assigner: HCL Software
Description
Description
HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability where data is transmitted over the network without encryption, which could allow an attacker to compromise the confidentiality, integrity, and authentication of sensitive information.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| hcltech | dfxanalytics | to 4.1 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-319 | The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors. |