Vulnerabilities > IBM > Cognos TM1 > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-01-26 | CVE-2017-1506 | Cross-site Scripting vulnerability in IBM Cognos TM1 10.2/10.2.2 IBM Cognos TM1 10.2 and 10.2.2 is vulnerable to cross-site scripting. | 6.1 |
2016-05-15 | CVE-2016-0381 | Improper Input Validation vulnerability in IBM Cognos TM1 IBM Cognos TM1 10.2.2 before FP5, when the host/pmhub/pm/admin AdminGroups setting is empty, allows remote authenticated users to cause a denial of service (configuration outage) via a non-empty value. | 4.3 |