CVE-2024-28780
CVSS 3.1 Score 5.9 of 10 (medium)
Details
Published Feb 19, 2025
CWE ID 327
Summary
CVE-2024-28780 is a vulnerability affecting IBM Cognos Controller versions 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 Rich Client. This issue arises due to the use of weaker than expected cryptographic algorithms, which could enable attackers to decrypt highly sensitive information. The exact nature of the cryptographic algorithms and the potential impact on data security have not been specified in the provided information. IBM is encouraged to release a patch addressing this vulnerability as soon as possible to mitigate potential risks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share