CVE-2023-30996
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Feb 26, 2024
Updated: Jun 21, 2024
CWE ID 346
Summary
CVE-2023-30996 is a vulnerability affecting IBM Cognos Analytics versions 11.1.7, 11.2.4, and 12.0.0. This issue allows for information leakage due to unverified sources in messages exchanged between Windows objects of disparate origins. IBM's X-Force has assigned the ID 254290 to this vulnerability. Attackers can potentially exploit this flaw to gain unintended access to sensitive data, posing a significant risk to organizations using the affected IBM Cognos Analytics software.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share