Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2024-41739

Disclosure Date: January 24, 2025 (last updated February 27, 2025)
IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized actions due to dependency confusion.
Attacker Value
Unknown

CVE-2023-38735

Disclosure Date: October 22, 2023 (last updated February 25, 2025)
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw. An attacker could exploit this vulnerability and redirect a victim to a phishing site. IBM X-Force ID: 262482.
Attacker Value
Unknown

CVE-2023-38276

Disclosure Date: October 22, 2023 (last updated February 25, 2025)
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in environment variables which could aid in further attacks against the system. IBM X-Force ID: 260736.
Attacker Value
Unknown

CVE-2023-38275

Disclosure Date: October 22, 2023 (last updated February 25, 2025)
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in container images which could lead to further attacks against the system. IBM X-Force ID: 260730.