PT-2019-16952 · Ibm · Ibm Cognos Controller

Published

2019-06-17

·

Updated

2023-01-30

·

CVE-2019-4177

CVSS v3.1

4.0

Medium

VectorUI:N/PR:N/I:N/A:N/C:L/AV:L/S:U/AC:L
Name of the Vulnerable Software and Affected Versions IBM Cognos Controller versions 10.2.0 through 10.4.0
Description The issue allows web pages to be stored locally, which can then be read by another user on the system.
Recommendations For versions 10.2.0 through 10.4.0, consider restricting access to sensitive web pages to minimize the risk of unauthorized access until a fix is available.

Fix

Improper Privilege Management

Weakness Enumeration

Related Identifiers

CVE-2019-4177

Affected Products

Ibm Cognos Controller