CVE-2021-20470: High severity IBM Cognos Analytics vulnerability
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196339.
Other sources
IBM Cognos Analytics does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2021-20470.
What is the title of the vulnerability?
The title of the vulnerability is 'IBM Cognos Analytics does not require that users should have strong passwords by default which makes...'.
What is the description of the vulnerability?
The description of the vulnerability is 'IBM Cognos Analytics does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.'
What is the severity of CVE-2021-20470?
The severity of CVE-2021-20470 is medium.
How can I fix the vulnerability?
To fix the vulnerability, enable the requirement for strong passwords in IBM Cognos Analytics.