Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-53339
HistoryJul 16, 2021 - 12:00 a.m.

IBM Cognos Controller Permissions Licensing and Access Control Issues Vulnerability

2021-07-1600:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
ibm cognos controller
business intelligence
planning solution
privilege permission
access control
misconfiguration
authentication mechanisms
empty password string
sensitive data
vulnerability

EPSS

0.003

Percentile

68.7%

IBM Cognos Controller is a business intelligence and planning solution from IBM Corporation. The product has features such as process automation, financial audit control, and creation and management of financial reports.IBM Cognos Controller is vulnerable to privilege permission and access control issues, and the vulnerability stems from a misconfiguration that could allow a user to bypass authentication mechanisms using an empty password string. An attacker could use this vulnerability to bypass authentication sensitive data.

EPSS

0.003

Percentile

68.7%

Related for CNVD-2021-53339