CVE Published: 12/10/2020 |
CVE Updated: 17/09/2024 |
CVE Year: 2020 Source: ibm |
Vendor: IBM |
Product: Cognos Analytics Status : PUBLISHED
CVE-2020-4302 Description
IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CSV injection. By persuading a victim to open a specially-crafted excel file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 176610.