CVE-2016-8960

Publication date

2017-03-27 22:00:00

Family

ibm

State

PUBLISHED

Description

IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of a higher-privilege user by intercepting the higher-privilege users cookie value from its HTTP request and then reusing it in subsequent requests. IBM Reference #: 1993718.