First published: Mon Jan 29 2018(Updated: )
IBM Cognos Analytics 11.0 could allow a local user to change parameters set from the Cognos Analytics menus without proper authentication. IBM X-Force ID: 136857.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Analytics | =11.0.0 | |
IBM Cognos Analytics | =11.0.1 | |
IBM Cognos Analytics | =11.0.2 | |
IBM Cognos Analytics | =11.0.3 | |
IBM Cognos Analytics | =11.0.4 | |
IBM Cognos Analytics | =11.0.5.0 | |
IBM Cognos Analytics | =11.0.6.0 | |
IBM Cognos Analytics | =11.0.7.0 | |
NetApp OnCommand Insight |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1783 has been classified with a moderate severity since it allows local users to change settings without proper authentication.
To fix CVE-2017-1783, ensure you apply the latest patches and updates provided by IBM for Cognos Analytics.
CVE-2017-1783 affects users of IBM Cognos Analytics versions from 11.0.0 to 11.0.7.0.
CVE-2017-1783 is a local privilege escalation vulnerability that enables unauthorized changes to system parameters.
No, CVE-2017-1783 is a local vulnerability and requires local access to exploit.