HCL DFXAnalytics is affected by an Internal File Path Disclosure vulnerability. The application dashboard inadvertently leaks sensitive information regarding its internal file structure and directory paths through unhandled error messages, system logs, or debugging output, which could allow a remote attacker to map the underlying server environment and identify targets for further exploitation.
References
| Link | Resource |
|---|---|
| https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0131787 | Vendor Advisory |
Configurations
History
17 Jul 2026, 19:11
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:hcltech:dfxanalytics:*:*:*:*:*:*:*:* | |
| References | () https://support.hcl-software.com/csm?id=kb_article&sysparm_article=KB0131787 - Vendor Advisory | |
| First Time |
Hcltech dfxanalytics
Hcltech |
16 Jul 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-16 14:16
Updated : 2026-07-17 19:11
NVD link : CVE-2026-56456
Mitre link : CVE-2026-56456
CVE.ORG link : CVE-2026-56456
JSON object : View
Products Affected
hcltech
- dfxanalytics
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
