SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-35141

LOW · CVSS 2.6 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

HCL DFXAnalytics is susceptible to a Login Replay Attack, enabling remote attackers to intercept and retransmit valid authentication data, potentially granting unauthorized access. Organizations using this application should prioritize implementing timestamp mechanisms to ensure that outdated messages are rejected, thereby mitigating the risk of exploitation. This vulnerability, while classified as low severity, still poses a threat to the integrity of user authentication processes.

CVE
CVE-2026-35141
Severity
LOW
CVSS
2.6
EPSS
0.19%

Original NVD Description

HCL DFXAnalytics is affected by a Login Replay Attack vulnerability. The application allows a remote attacker to intercept, delay, or fraudulently retransmit valid authentication data to achieve unauthorized access. To mitigate this risk, the application must implement a mechanism to include timestamps with every message, ensuring that messages exceeding a specific age threshold are automatically rejected by the recipient system.

Related CVEs

Other vulnerabilities affecting the same vendor(s)