CVE-2020-4561
01.06.2021, 14:15
IBM Cognos Analytics 11.0 and 11.1 DQM API allows submitting of all control requests in unauthenticated sessions. This allows a remote attacker who can access a valid CA endpoint to read and write files to the Cognos Analytics system. IBM X-Force ID: 183903.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | cognos_analytics | 11.0.0 |
ibm | cognos_analytics | 11.1.0 |
netapp | oncommand_insight | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References