CVE-2017-1783: Medium severity ibm cognos analytics vulnerability
Published Jan 29, 2018
·Updated
IBM Cognos Analytics 11.0 could allow a local user to change parameters set from the Cognos Analytics menus without proper authentication. IBM X-Force ID: 136857.
Affected Software
9 affected components
IBM Cognos Analytics=11.0.0
IBM Cognos Analytics=11.0.1
IBM Cognos Analytics=11.0.2
IBM Cognos Analytics=11.0.3
IBM Cognos Analytics=11.0.4
IBM Cognos Analytics=11.0.5.0
IBM Cognos Analytics=11.0.6.0
IBM Cognos Analytics=11.0.7.0
NetApp OnCommand Insight
Event History
Jan 29, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1783?
CVE-2017-1783 has been classified with a moderate severity since it allows local users to change settings without proper authentication.
2
How do I fix CVE-2017-1783?
To fix CVE-2017-1783, ensure you apply the latest patches and updates provided by IBM for Cognos Analytics.
3
Who is affected by CVE-2017-1783?
CVE-2017-1783 affects users of IBM Cognos Analytics versions from 11.0.0 to 11.0.7.0.
4
What kind of vulnerability is CVE-2017-1783?
CVE-2017-1783 is a local privilege escalation vulnerability that enables unauthorized changes to system parameters.
5
Can CVE-2017-1783 be exploited remotely?
No, CVE-2017-1783 is a local vulnerability and requires local access to exploit.