ZeroHour

CVE-2023-32344

CVSS 3.1
4.3 medium
EPSS
<1%p31
Published
()
Modified
Description

IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 is vulnerable to form action hijacking where it is possible to modify the form action to reference an arbitrary path. IBM X-Force ID: 255898.

Vendors
netappibm
Products
oncommand insight, cognos analytics
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.