First published: Fri Apr 22 2022(Updated: )
IBM Cognos Analytics PowerPlay (IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7) could be vulnerable to an XML Bomb attack by a malicious authenticated user. IBM X-Force ID: 196813.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Analytics | =11.1.7 | |
IBM Cognos Analytics | =11.2.0 | |
IBM Cognos Analytics | =11.2.1 | |
NetApp OnCommand Insight |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20464.
The title of the vulnerability is 'IBM Cognos Analytics PowerPlay could be vulnerable to an XML Bomb attack by a malicious authenticated user.'
The description of the vulnerability is that IBM Cognos Analytics PowerPlay could be vulnerable to an XML Bomb attack by a malicious authenticated user.
The severity of the vulnerability is medium with a severity value of 6.5.
Yes, there is a reference available at https://exchange.xforce.ibmcloud.com/vulnerabilities/196813.