← Back

CVE-2024-45084

nvd nist
Published: Feb 19, 2025Modified: Sep 29, 2025

JSON object

Loading...
8.0
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.1 / Impact: 5.9
Source: psirt@us.ibm.com (Secondary)

Description

IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 could allow an authenticated attacker to conduct formula injection. An attacker could execute arbitrary commands on the system, caused by improper validation of file contents.

Affected (2)

2 products
Cognos Controller
Controller
Configuration A
2 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 11.0.0 to 11.0.1.4
Version 11.1.0
Running on/withPlatform Versions
Microsoft
Windows
All versions

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.