CVE-2024-40691 : IBM COGNOS CONTROLLER 11.0.0/11.0.1 WEB INTERFACE UNRESTRICTED UPLOAD

Description

IBM Cognos Controller 11.0.0 and 11.0.1 could be vulnerable to malicious file upload by not validating the content of the file uploaded to the web interface. Attackers can make use of this weakness and upload malicious executable files into the system, and it can be sent to victim for performing further attacks.

References

https://www.ibm.com/support/pages/node/7177220

For More Information

CVERecord

Common Vulnerabilityies and Exposures

Contact us to get started

CVE-2024-51771 : HPE ARUBA NETWORKING CLEARPASS POLICY MANAGER UP TO 6.11.9/6.12.2 WEB-BASED MANAGEMENT INTERFACE OS COMMAND INJECTION

CVE-2024-51771 : HPE ARUBA NETWORKING CLEARPASS POLICY MANAGER UP TO 6.11.9/6.12.2 WEB-BASED MANAGEMENT INTERFACE OS COMMAND INJECTION

Description A vulnerability in the HPE Aruba Networking ClearPass Policy Manager web-based management interface could allow an authenticated remote threat

CVE-2024-54000 : MOBSF MOBILE-SECURITY-FRAMEWORK- UP TO 3.9.6 302 REDIRECT SERVER-SIDE REQUEST FORGERY

CVE-2024-54000 : MOBSF MOBILE-SECURITY-FRAMEWORK- UP TO 3.9.6 302 REDIRECT SERVER-SIDE REQUEST FORGERY

Description Mobile Security Framework (MobSF) is a pen-testing, malware analysis and security assessment framework capable of performing static and dynamic

CVE-2024-40691 : IBM COGNOS CONTROLLER 11.0.0/11.0.1 WEB INTERFACE UNRESTRICTED UPLOAD

CVE-2024-40691 : IBM COGNOS CONTROLLER 11.0.0/11.0.1 WEB INTERFACE UNRESTRICTED UPLOAD

Description IBM Cognos Controller 11.0.0 and 11.0.1 could be vulnerable to malicious file upload by not validating the content of