CyberRota Analysis
AI-GeneratedThe HCL DFMPro, DFXAnalytics, and DFXServer installers are vulnerable due to insecure file permissions, allowing non-administrative users to overwrite executable files with malicious binaries. This privilege escalation could lead to unauthorized execution of arbitrary code, potentially compromising system integrity. Organizations using these products should prioritize remediation to mitigate the risk of exploitation.
Original NVD Description
The HCL DFMPro, DFXAnalytics and DFXServer installers are affected by ‘Insecure file permissions Leading to Privilege Escalation’ vulnerability, which enables any logged-in non-administrative user to overwrite or replace the executable file with a malicious binary.