Ibm

Cognos Analytics

102 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.37%
  • Published 12.10.2020 14:15:12
  • Last modified 21.11.2024 05:32:33

IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CSV injection. By persuading a victim to open a specially-crafted excel file, an attacker could exploit this vulnerability to execut...

  • EPSS 0.2%
  • Published 12.10.2020 14:15:12
  • Last modified 21.11.2024 05:32:41

IBM Cognos Analytics 11.0 and 11.1 could be vulnerable to a denial of service attack by failing to catch exceptions in a servlet also exposing debug information could also be used in future attacks. IBM X-Force ID: 179270.

  • EPSS 0.08%
  • Published 03.08.2020 13:15:11
  • Last modified 21.11.2024 04:43:46

IBM Cognos Analytics 11.0 and 11.1 is vulnerable to privlege escalation where the "My schedules and subscriptions" page is visible and accessible to a less privileged user. IBM X-Force ID: 167449.

  • EPSS 0.61%
  • Published 03.08.2020 13:15:11
  • Last modified 21.11.2024 05:32:39

IBM Cognos Anaytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID:...

  • EPSS 0.12%
  • Published 03.08.2020 13:15:10
  • Last modified 21.11.2024 04:43:30

IBM Cognos Analytics 11.0 and 11.1 is susceptible to an information disclosure vulnerability where an attacker could gain access to cached browser data. IBM X-Force ID: 161748.

  • EPSS 0.13%
  • Published 27.04.2020 14:15:11
  • Last modified 21.11.2024 04:44:03

IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID:...

  • EPSS 0.29%
  • Published 30.12.2019 16:15:11
  • Last modified 21.11.2024 04:43:30

IBM Cognos Analytics 11.0 and 11.1 allows overly permissive cross-origin resource sharing which could allow an attacker to transfer private information. An attacker could exploit this vulnerability to access content that should be restricted. IBM X-F...

  • EPSS 0.21%
  • Published 30.12.2019 16:15:11
  • Last modified 21.11.2024 04:43:53

IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a...

  • EPSS 0.18%
  • Published 20.12.2019 17:15:12
  • Last modified 21.11.2024 04:43:21

IBM Cognos Analytics 11.0 and 11.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 159356.

  • EPSS 0.35%
  • Published 20.12.2019 17:15:12
  • Last modified 21.11.2024 04:43:43

IBM Cognos Analytics 11.0 and 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a...