IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of a higher-privilege user by intercepting the higher-privilege user's cookie value from its HTTP request and then reusing it in subsequent requests. IBM Reference #: 1993718.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2017-03-27T22:00:00
Updated: 2024-08-06T02:35:02.336Z
Reserved: 2016-10-25T00:00:00
Link: CVE-2016-8960
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-03-27T22:59:00.227
Modified: 2024-11-21T03:00:22.483
Link: CVE-2016-8960
Redhat
No data.