Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ibm Subscribe
Filtered by product Cognos Disclosure Management
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-0501 1 Ibm 1 Cognos Disclosure Management 2017-08-28 9.3 HIGH N/A
The EdrawSoft EDOFFICE.EDOfficeCtrl.1 ActiveX control, as used in Edraw Office Viewer Component, the client in IBM Cognos Disclosure Management (CDM) 10.2.0, and other products, allows remote attackers to read arbitrary files, or download an arbitrary program onto a client machine and execute this program, via a crafted web site.
CVE-2016-6077 1 Ibm 1 Cognos Disclosure Management 2017-02-17 6.8 MEDIUM 5.3 MEDIUM
IBM Cognos Disclosure Management 10.2 could allow a malicious attacker to execute commands as a lower privileged user that opens a malicious document. IBM Reference #: 1991584.
CVE-2015-5014 1 Ibm 1 Cognos Disclosure Management 2015-10-26 9.3 HIGH N/A
IBM Cognos Disclosure Management (CDM) 10.1.x and 10.2.x before 10.2.4 IF10 allows man-in-the-middle attackers to obtain access by spoofing an executable file during a client upload operation.