CVE-2024-45082

CVSS 3.1 Score 5.2 of 10 (medium)

Details

Published Dec 18, 2024
Updated: Jan 10, 2025
CWE ID 601

Summary

CVE-2024-45082 is a vulnerability impacting IBM Cognos Analytics versions 11.2.0 through 11.2.4 and 12.0.0 through 12.0.3. This issue allows remote attackers to execute open redirect attacks, enabling them to trick victims into visiting malicious websites that mimic trusted ones. By persuading a user to click a crafted link, an attacker can exploit this flaw and potentially steal sensitive information or install malware.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM Cognos Analytics

Affected Vendors

  • IBM Corporation