cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-31899,https://securityvulnerability.io/vulnerability/CVE-2024-31899,Cognos Command Center Exposes Sensitive User Information,"A security issue exists in IBM Cognos Command Center that allows an authenticated user with physical access to a compromised device to gain access to highly sensitive user information. This vulnerability raises serious concerns about data protection, particularly in environments where sensitive data is processed. Organizations using the affected versions should be aware of the potential risks and implement appropriate security measures.",IBM,Cognos Command Center,4.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-09-26T13:34:57.008Z,0 CVE-2023-50324,https://securityvulnerability.io/vulnerability/CVE-2023-50324,Cognos Command Center Exposes Application Environment Details,IBM Cognos Command Center 10.2.4.1 and 10.2.5 exposes details the X-AspNet-Version Response Header that could allow an attacker to obtain information of the application environment to conduct further attacks. IBM X-Force ID: 275038.,IBM,Cognos Command Center,5.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-03-01T01:58:09.921Z,0 CVE-2022-38707,https://securityvulnerability.io/vulnerability/CVE-2022-38707,IBM Cognos Command Center information disclosure,IBM Cognos Command Center 10.2.4.1 could allow a local attacker to obtain sensitive information due to insufficient session expiration. IBM X-Force ID: 234179.,IBM,Cognos Command Center,4,MEDIUM,0.0004199999966658652,false,,false,false,false,,,false,false,,2023-05-05T13:54:45.562Z,0 CVE-2013-4000,https://securityvulnerability.io/vulnerability/CVE-2013-4000,,Multiple cross-site request forgery (CSRF) vulnerabilities in IBM Cognos Command Center before 10.2 allow remote attackers to hijack the authentication of administrators for requests that (1) start or (2) stop services.,IBM,Cognos Command Center,,,0.0008999999845400453,false,,false,false,false,,,false,false,,2013-12-14T22:00:00.000Z,0 CVE-2013-4001,https://securityvulnerability.io/vulnerability/CVE-2013-4001,,Session fixation vulnerability in IBM Cognos Command Center before 10.2 allows remote attackers to hijack web sessions via an authorization cookie.,IBM,Cognos Command Center,,,0.0016299999551847577,false,,false,false,false,,,false,false,,2013-12-14T22:00:00.000Z,0