IBM Cognos Controller 11.0.0 and 11.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39342 | IBM Cognos Controller 11.0.0 and 11.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7177220 |
|
History
Tue, 03 Dec 2024 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 03 Dec 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Cognos Controller 11.0.0 and 11.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | |
| Title | IBM Cognos Controller information disclosure | |
| First Time appeared |
Ibm
Ibm cognos Controller |
|
| Weaknesses | CWE-327 | |
| CPEs | cpe:2.3:a:ibm:cognos_controller:11.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_controller:11.0.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm cognos Controller |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-12-03T17:55:03.866Z
Reserved: 2024-07-22T12:02:59.129Z
Link: CVE-2024-41775
Updated: 2024-12-03T17:49:45.756Z
Status : Analyzed
Published: 2024-12-03T18:15:13.920
Modified: 2024-12-11T03:25:45.430
Link: CVE-2024-41775
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD