First published: Fri Oct 09 2020(Updated: )
IBM Cognos Analytics 11.0 and 11.1 could be vulnerable to a denial of service attack by failing to catch exceptions in a servlet also exposing debug information could also be used in future attacks. IBM X-Force ID: 179270.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Analytics | >=11.0.0<11.0.13 | |
IBM Cognos Analytics | >=11.1.0<=11.1.7 | |
IBM Cognos Analytics | =11.0.13 | |
IBM Cognos Analytics | =11.0.13-fixpack1 | |
IBM Cognos Analytics | =11.0.13-fixpack2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4388 is a vulnerability in IBM Cognos Analytics that could be exploited for a denial of service attack.
CVE-2020-4388 can allow an attacker to perform a denial of service attack on IBM Cognos Analytics.
CVE-2020-4388 has a severity rating of 8.2 out of 10.
IBM Cognos Analytics versions 11.0 and 11.1 are affected by CVE-2020-4388.
To fix CVE-2020-4388 in IBM Cognos Analytics, apply the recommended patches or updates provided by IBM.