CVE-2021-29824: Medium severity ibm cognos analytics vulnerability
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 is vulnerable to priviledge escalation where a lower level user could have read access to to the 'Data Connections' page to which they don't have access. IBM X-Force ID: 204468.
Other sources
IBM Cognos Analytics is vulnerable to priviledge escalation where a lower level user could have read access to to the 'Data Connections' page to which they don't have access.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-29824?
CVE-2021-29824 is a vulnerability in IBM Cognos Analytics that allows a lower level user to have read access to the 'Data Connections' page.
What is the severity of CVE-2021-29824?
The severity of CVE-2021-29824 is low with a CVSS score of 3.1.
How does CVE-2021-29824 work?
CVE-2021-29824 works by allowing a lower level user to gain unauthorized read access to the 'Data Connections' page in IBM Cognos Analytics.
How can I fix CVE-2021-29824?
To fix CVE-2021-29824, apply the necessary security updates provided by IBM.
Where can I find more information about CVE-2021-29824?
You can find more information about CVE-2021-29824 on the IBM X-Force Exchange website at https://exchange.xforce.ibmcloud.com/vulnerabilities/204468.