Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g3fv-gcpq-5jgx

Опубликовано: 18 дек. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3

is potentially vulnerable to Cross Site Scripting (XSS). A remote attacker could execute malicious commands due to improper validation of column headings in Cognos Explorations.

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3

is potentially vulnerable to Cross Site Scripting (XSS). A remote attacker could execute malicious commands due to improper validation of column headings in Cognos Explorations.

EPSS

Процентиль: 22%
0.00072
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 1 года назад

IBM Cognos Analytics 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3 is potentially vulnerable to Cross Site Scripting (XSS). A remote attacker could execute malicious commands due to improper validation of column headings in Cognos Explorations.

EPSS

Процентиль: 22%
0.00072
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79