IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a remote attacker to obtain system information without authentication which could be used in reconnaissance to gather information that could be used for future attacks. IBM X-Force ID: 257703.
The product generates an error message that includes sensitive information about its environment, users, or associated data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cognos_analytics | Ibm | 11.1.0 (including) | 11.1.7 (excluding) |
Cognos_analytics | Ibm | 11.2.0 (including) | 11.2.4 (excluding) |
Cognos_analytics | Ibm | 11.1.7 (including) | 11.1.7 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix1 (including) | 11.1.7-interimfix1 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix2 (including) | 11.1.7-interimfix2 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix3 (including) | 11.1.7-interimfix3 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix4 (including) | 11.1.7-interimfix4 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix5 (including) | 11.1.7-interimfix5 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix6 (including) | 11.1.7-interimfix6 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix7 (including) | 11.1.7-interimfix7 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix8 (including) | 11.1.7-interimfix8 (including) |
Cognos_analytics | Ibm | 11.1.7-interimfix9 (including) | 11.1.7-interimfix9 (including) |
Cognos_analytics | Ibm | 11.2.4 (including) | 11.2.4 (including) |
Cognos_analytics | Ibm | 11.2.4-fixpack1 (including) | 11.2.4-fixpack1 (including) |