PT-2019-16949 · Ibm · Ibm Cognos Controller

Published

2019-06-17

·

Updated

2023-01-30

·

CVE-2019-4174

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Cognos Controller versions 10.2.0 through 10.4.0
Description The issue allows web pages to be stored locally, which can then be read by another user on the system.
Recommendations For versions 10.2.0 through 10.4.0, consider implementing access controls to restrict unauthorized reading of locally stored web pages until a fix is available.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2019-4174

Affected Products

Ibm Cognos Controller