CVE-2024-41777: IBM Cognos Controller hard coded credentials
IBM Cognos Controller 11.0.0 and 11.0.1
contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Other sources
IBM Controller contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-41777?
CVE-2024-41777 has a medium severity rating due to the presence of hard-coded credentials in IBM Cognos Controller versions 11.0.0 and 11.0.1.
How do I fix CVE-2024-41777?
To mitigate CVE-2024-41777, upgrade IBM Cognos Controller to the latest version where the hard-coded credentials issue has been resolved.
What products are affected by CVE-2024-41777?
CVE-2024-41777 affects IBM Cognos Controller versions 11.0.0 and 11.0.1.
What are the risks associated with CVE-2024-41777?
The risks associated with CVE-2024-41777 include unauthorized access and potential data exposure due to the use of hard-coded credentials.
Is CVE-2024-41777 being actively exploited?
There are currently no reports indicating that CVE-2024-41777 is being actively exploited in the wild.