IBM Cognos Analytics 11.2.0 through 11.2.4 FP5 is vulnerable to local file inclusion vulnerability, allowing an attacker to access sensitive files by inserting path traversal payloads inside the deficon parameter.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.ibm.com/support/pages/node/7183676 |
![]() ![]() |
History
Wed, 02 Jul 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:-:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack1:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack2:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack3:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack4:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack5:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.4:-:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.4:interim_fix_1:*:*:*:*:*:* |
Tue, 04 Mar 2025 03:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 28 Feb 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | IBM MQ path traversal | IBM Cognos Analytics path traversal |
Fri, 28 Feb 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | IBM Cognos Analytics 11.2.0 through 11.2.4 FP5 is vulnerable to local file inclusion vulnerability, allowing an attacker to access sensitive files by inserting path traversal payloads inside the deficon parameter. | |
Title | IBM MQ path traversal | |
First Time appeared |
Ibm
Ibm cognos Analytics |
|
Weaknesses | CWE-23 | |
CPEs | cpe:2.3:a:ibm:cognos_analytics:11.2.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.3:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:11.2.4:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.3:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.0.4:*:*:*:*:*:*:* |
|
Vendors & Products |
Ibm
Ibm cognos Analytics |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ibm
Published: 2025-02-28T02:32:30.345Z
Updated: 2025-02-28T16:15:40.732Z
Reserved: 2024-12-20T13:55:07.212Z
Link: CVE-2024-56340

Updated: 2025-02-28T16:03:49.500Z

Status : Analyzed
Published: 2025-02-28T03:15:10.363
Modified: 2025-07-02T15:59:10.950
Link: CVE-2024-56340

No data.