Ibm

Cognos Analytics

102 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 19.12.2022 21:15:10
  • Zuletzt bearbeitet 21.11.2024 07:27:19

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to sensitive information exposure by passing API keys to log files. If these keys contain sensitive information, it could lead to further attacks. IBM X-Force ID: 240450.

  • EPSS 0.07%
  • Veröffentlicht 03.11.2022 20:15:28
  • Zuletzt bearbeitet 02.05.2025 21:15:17

"IBM Cognos Analytics 11.2.1, 11.2.0, 11.1.7 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 229963."

  • EPSS 0.1%
  • Veröffentlicht 01.09.2022 19:15:12
  • Zuletzt bearbeitet 21.11.2024 06:18:24

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privileged user. IBM X-Force ID: 213554.

  • EPSS 0.28%
  • Veröffentlicht 01.09.2022 19:15:12
  • Zuletzt bearbeitet 21.11.2024 06:18:28

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomplete feature on password input fields. IBM X-Force ID: 214345.

  • EPSS 1.02%
  • Veröffentlicht 01.09.2022 19:15:12
  • Zuletzt bearbeitet 21.11.2024 07:03:01

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a denial of service via email flooding caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume all available CPU...

  • EPSS 0.77%
  • Veröffentlicht 01.09.2022 19:15:12
  • Zuletzt bearbeitet 21.11.2024 07:13:40

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. I...

  • EPSS 0.19%
  • Veröffentlicht 01.09.2022 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:32:33

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 176609.

  • EPSS 0.19%
  • Veröffentlicht 01.09.2022 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:46:37

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 196825.

  • EPSS 0.08%
  • Veröffentlicht 01.09.2022 19:15:11
  • Zuletzt bearbeitet 21.11.2024 06:01:52

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 204465.

  • EPSS 0.3%
  • Veröffentlicht 24.06.2022 16:15:08
  • Zuletzt bearbeitet 21.11.2024 06:01:46

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a low level user to obtain sensitive information from the details of the 'Cloud Storage' page for which they should not have access. IBM X-Force ID: 202682.