CVE-2017-1784
- EPSS 0.38%
- Veröffentlicht 29.01.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:22:21
IBM Cognos Analytics 11.0 could produce results in temporary files that contain highly sensitive information that can be read by a local user. IBM X-Force ID: 136858.
CVE-2017-1427
- EPSS 1%
- Veröffentlicht 29.08.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2017-1428
- EPSS 1.16%
- Veröffentlicht 29.08.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and pos...
CVE-2017-1485
- EPSS 0.54%
- Veröffentlicht 29.08.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2017-1535
- EPSS 0.72%
- Veröffentlicht 29.08.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2016-3032
- EPSS 0.51%
- Veröffentlicht 10.05.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2016-3015
- EPSS 0.52%
- Veröffentlicht 05.04.2017 18:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2016-3031
- EPSS 0.52%
- Veröffentlicht 05.04.2017 18:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted ...
CVE-2016-0217
- EPSS 0.71%
- Veröffentlicht 01.02.2017 22:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
IBM Cognos Business Intelligence and IBM Cognos Analytics are vulnerable to stored cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability to inject malicious script into a Web pa...
CVE-2016-0398
- EPSS 1.16%
- Veröffentlicht 02.07.2016 14:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
IBM Cognos Analytics (CA) 11.0 before 11.0.2 allows remote attackers to conduct content-spoofing attacks via a crafted URL.