Information Disclosure Vulnerability in IBM Cognos Express
CVE-2013-5445
Currently unrated
What is CVE-2013-5445?
IBM Cognos Express versions 9.0, 9.5, 10.1, and 10.2.1 have a vulnerability that allows local users to gain access to sensitive information. This risks the exposure of sensitive cleartext data due to the presence of a static decryption key in earlier releases. Users with knowledge of this key can exploit the vulnerability, potentially compromising confidential information and leading to security breaches.