IBM Planning Analytics 2.0 and IBM Cognos Analytics 11.2.1, 11.2.0, and 11.1.7 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 214349.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm planning analytics 2.0 |
||
ibm cognos analytics 11.1.7 |
||
ibm cognos analytics |
||
ibm cognos analytics 11.2.0 |
||
ibm cognos analytics 11.2.1 |
||
netapp oncommand insight - |