← back
CVE-2021-38905medium

CVE-2021-38905

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 4.3epss 0.9%
exploitation probability
0.9%top 41% of all CVEs
observed exploitation
nono source reports it
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.1.7 could allow an authenticated user to view report pages that they should not have access to. IBM X-Force ID: 209697.
CVSS:3.0/I:N/AV:N/PR:L/S:U/AC:L/C:L/UI:N/A:N/RC:C/RL:O/E:U
Affected products
IBM · Cognos Analytics