IBM Cognos Controller 11.0.0 and 11.0.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
History

Tue, 03 Dec 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 03 Dec 2024 17:30:00 +0000

Type Values Removed Values Added
Description IBM Cognos Controller 11.0.0 and 11.0.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Title IBM Cognos Controller hard coded credentials
First Time appeared Ibm
Ibm cognos Controller
Weaknesses CWE-798
CPEs cpe:2.3:a:ibm:cognos_controller:11.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_controller:11.0.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm cognos Controller
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-12-03T17:10:06.403Z

Updated: 2024-12-03T17:49:50.964Z

Reserved: 2024-07-22T12:02:59.129Z

Link: CVE-2024-41777

cve-icon Vulnrichment

Updated: 2024-12-03T17:49:48.620Z

cve-icon NVD

Status : Analyzed

Published: 2024-12-03T18:15:14.293

Modified: 2024-12-11T03:22:46.490

Link: CVE-2024-41777

cve-icon Redhat

No data.