CVE Published: 19/12/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: ibm |
Vendor: IBM |
Product: Cognos Analytics Status : PUBLISHED
CVE-2022-43887 Description
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to sensitive information exposure by passing API keys to log files. If these keys contain sensitive information, it could lead to further attacks. IBM X-Force ID: 240450.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N