Information Disclosure Vulnerability in IBM Cognos Controller
CVE-2021-20455
3.7LOW
What is CVE-2021-20455?
A potential information disclosure vulnerability exists in IBM Cognos Controller versions 11.0.0 to 11.0.1 and IBM Controller 11.1.0. This vulnerability may allow a remote attacker to glean sensitive information through the improper handling of detailed error messages returned by the system. These error messages could reveal insights that may facilitate further attacks, making it imperative for users to mitigate this risk.
Affected Version(s)
Cognos Controller 11.0.0 <= 11.0.1
Controller 11.1.0