Vulnerabilities > CVE-2021-20461 - Exposure of Resource to Wrong Sphere vulnerability in multiple products
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
HIGH Availability impact
NONE Summary
IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configuration setting. An attacker could potentially bypass business logic to modify the appearance and behavior of the application. IBM X-Force ID: 196770.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/196770
- https://exchange.xforce.ibmcloud.com/vulnerabilities/196770
- https://security.netapp.com/advisory/ntap-20210720-0007/
- https://security.netapp.com/advisory/ntap-20210720-0007/
- https://www.ibm.com/support/pages/node/6466729
- https://www.ibm.com/support/pages/node/6466729