CVE-2024-49352 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 is vulnerable to an XML External Entity Injection (XXE)…
High CVSS: 7.1

CVE-2024-49352

IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
Vendor
Ibm
Product
Cognos Analytics
CWE
CWE-611
Yayın Tarihi
2025-02-05 11:15:14
Güncelleme
2025-07-02 15:59:03
Source Identifier
psirt@us.ibm.com
KEV Date Added
-

Kategoriler

Referanslar