IBM Cognos Analytics 11.0 and 11.1 is vulnerable to privlege escalation where the "My schedules and subscriptions" page is visible and accessible to a less privileged user. IBM X-Force ID: 167449.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/167449 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6252853 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: ibm
Published: 2020-07-30T00:00:00
Updated: 2020-08-03T12:35:36
Reserved: 2019-01-03T00:00:00
Link: CVE-2019-4589
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-08-03T13:15:11.057
Modified: 2020-08-03T19:47:17.677
Link: CVE-2019-4589
JSON object: View
Redhat Information
No data.
CWE