Vulnerability Details CVE-2023-35009
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a remote attacker to obtain system information without authentication which could be used in reconnaissance to gather information that could be used for future attacks. IBM X-Force ID: 257703.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.9%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-35009
-
cpe:2.3:a:ibm:cognos_analytics:11.1.0
-
cpe:2.3:a:ibm:cognos_analytics:11.1.1
-
cpe:2.3:a:ibm:cognos_analytics:11.1.2
-
cpe:2.3:a:ibm:cognos_analytics:11.1.3
-
cpe:2.3:a:ibm:cognos_analytics:11.1.4
-
cpe:2.3:a:ibm:cognos_analytics:11.1.5
-
cpe:2.3:a:ibm:cognos_analytics:11.1.6
-
cpe:2.3:a:ibm:cognos_analytics:11.1.7
-
cpe:2.3:a:ibm:cognos_analytics:11.2.0
-
cpe:2.3:a:ibm:cognos_analytics:11.2.1
-
cpe:2.3:a:ibm:cognos_analytics:11.2.2
-
cpe:2.3:a:ibm:cognos_analytics:11.2.3
-
cpe:2.3:a:ibm:cognos_analytics:11.2.4