ZeroHour

CVE-2024-45084

CVSS 3.1
8.0 high
EPSS
<1%p34
Published
()
Modified
Description

IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 could allow an authenticated attacker to conduct formula injection. An attacker could execute arbitrary commands on the system, caused by improper validation of file contents.

Vendors
ibm
Products
cognos controller, controller
Weakness
CWE-1236
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.