CVE-2024-40703
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: psirt@us.ibm.com (Secondary)
Description
IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and IBM Cognos Analytics Reports for iOS 11.0.0.7 could allow a local attacker to obtain sensitive information in the form of an API key. An attacker could use this information to launch further attacks against affected applications.
Affected (6)
Products: Ibm: Cognos Analytics, Cognos Analytics Reports
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 11.2.0 to 11.2.3 | |
| Version 11.0.0.7 |
References (2)
Timeline
No history available yet.