CVE-2016-9711: Infoleak
Published Mar 22, 2018
·Updated
IBM Predictive Solutions Foundation (IBM Cognos Analytics 11.0) reveals sensitive information in detailed error messages that could aid an attacker in further attacks against the system. IBM X-Force ID: 119619.
Affected Software
1 affected component
IBM Cognos Analytics=11.0.0
Event History
Mar 22, 2018
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-9711?
The severity of CVE-2016-9711 is categorized as medium due to the potential for sensitive information disclosure.
2
How do I fix CVE-2016-9711?
To fix CVE-2016-9711, upgrade to a patched version of IBM Cognos Analytics that addresses the vulnerability.
3
What kind of information is exposed by CVE-2016-9711?
CVE-2016-9711 exposes sensitive information through detailed error messages that could be leveraged by attackers.
4
Which versions of Cognos Analytics are affected by CVE-2016-9711?
CVE-2016-9711 specifically affects IBM Cognos Analytics version 11.0.0.
5
Is CVE-2016-9711 exploitable remotely?
Yes, CVE-2016-9711 can be exploited remotely by an attacker who can trigger the error messages.