CVE-2023-30996
published 2024-02-26CVE-2023-30996: IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages sent between Windows objects…
PriorityP425medium5.3CVSS 3.1
AVNACLPRNUINSUCLINAN
EPSS
0.42%
34.1th percentile
IBM Cognos Analytics 11.1.7, 11.2.4, and 12.0.0 could be vulnerable to information leakage due to unverified sources in messages sent between Windows objects of different origins. IBM X-Force ID: 254290.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | cognos_analytics | — | — |
| ibm | cognos_analytics | — | — |
| ibm | cognos_analytics | — | — |
| ibm | cognos_analytics | — | — |
| ibm | cognos_analytics | — | — |
| ibm | cognos_analytics | >= 11.1.1 < 11.1.7 | 11.1.7 |
| ibm | cognos_analytics | >= 11.2.0 < 11.2.4 | 11.2.4 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://exchange.xforce.ibmcloud.com/vulnerabilities/254290https://security.netapp.com/advisory/ntap-20240405-0004/https://security.netapp.com/advisory/ntap-20240621-0006/https://www.ibm.com/support/pages/node/7123154https://exchange.xforce.ibmcloud.com/vulnerabilities/254290https://security.netapp.com/advisory/ntap-20240405-0004/https://security.netapp.com/advisory/ntap-20240621-0006/https://www.ibm.com/support/pages/node/7123154
2024-02-26
Published