ZeroHour

CVE-2024-25047

CVSS 3.1
8.6 high
EPSS
<1%p49
Published
()
Modified
Description

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.2 is vulnerable to injection attacks in application logging by not sanitizing user provided data. This could lead to further attacks against the system. IBM X-Force ID: 282956.

Vendors
ibmnetapp
Products
cognos analytics, oncommand insight
Weakness
CWE-117
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.