CVE-2019-4730: XEE
IBM Cognos Analytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 172533.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-4730?
CVE-2019-4730 is a vulnerability in IBM Cognos Analytics 11.0 and 11.1 that allows for an XML External Entity (XXE) Injection attack.
How does CVE-2019-4730 impact IBM Cognos Analytics?
CVE-2019-4730 can be exploited by a remote attacker to expose sensitive information or consume memory resources in IBM Cognos Analytics 11.0 and 11.1.
Which versions of IBM Cognos Analytics are affected by CVE-2019-4730?
CVE-2019-4730 affects IBM Cognos Analytics versions 11.0.0 and 11.1.0.
How can CVE-2019-4730 be fixed?
To mitigate CVE-2019-4730, it is recommended to apply the necessary security patches and updates provided by IBM.
Where can I find more information about CVE-2019-4730?
You can find more information about CVE-2019-4730 on the IBM X-Force ID: 172533.