Security Advisory

CVE-2022-43883

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-19 20:47:46
Last updated 2025-04-16 17:38:32
Assigner ibm
State PUBLISHED

Description

IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could be vulnerable to a Log Injection attack by constructing URLs from user-controlled data. This could enable attackers to make arbitrary requests to the internal network or to the local file system. IBM X-Force ID: 240266.