ZeroHour

CVE-2016-3037

CVSS 3.0
5.7 medium
EPSS
<1%p58
Published
()
Modified
Description

IBM Cognos TM1 10.1 and 10.2 provides a service to return the victim's password with a valid session key. An authenticated attacker with user interaction could obtain this sensitive information. IBM X-Force ID: 114613.

Vendors
ibm
Products
cognos business intelligence
Weakness
CWE-200
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.