IBM Cognos Express 9.0 allows attackers to obtain unspecified access to the Tomcat Manager component, and cause a denial of service, by leveraging hardcoded credentials.
References
Link | Resource |
---|---|
http://www.osvdb.org/62118 | |
http://www-01.ibm.com/support/docview.wss?uid=swg21419179 | Vendor Advisory |
http://www.vupen.com/english/advisories/2010/0297 | Vendor Advisory |
http://secunia.com/advisories/38457 | Vendor Advisory |
http://www.securityfocus.com/bid/38084 |
Configurations
Information
Published : 2010-02-05 14:30
Updated : 2010-02-07 21:00
NVD link : CVE-2010-0557
Mitre link : CVE-2010-0557
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
ibm
- cognos_express