Vulnerabilities > IBM > Cognos Dashboards ON Cloud PAK FOR Data > 4.7.0

DATE CVE VULNERABILITY TITLE RISK
2023-10-22 CVE-2023-38276 Cleartext Transmission of Sensitive Information vulnerability in IBM Cognos Dashboards on Cloud PAK for Data 4.7.0
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in environment variables which could aid in further attacks against the system.
network
low complexity
ibm CWE-319
7.5
2023-10-22 CVE-2023-38735 Improper Authentication vulnerability in IBM Cognos Dashboards on Cloud PAK for Data 4.7.0
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 could allow a remote attacker to bypass security restrictions, caused by a reverse tabnabbing flaw.
network
low complexity
ibm CWE-287
6.5
2023-10-22 CVE-2023-38275 Cleartext Transmission of Sensitive Information vulnerability in IBM Cognos Dashboards on Cloud PAK for Data 4.7.0
IBM Cognos Dashboards on Cloud Pak for Data 4.7.0 exposes sensitive information in container images which could lead to further attacks against the system.
network
low complexity
ibm CWE-319
7.5