IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
BID:56561
Info
IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
| Bugtraq ID: | 56561 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-4847 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 26 2012 12:00AM |
| Updated: | Oct 26 2012 12:00AM |
| Credit: | Niv Sela, Hacktics ASC, Ernst & Young |
| Vulnerable: |
IBM Cognos Business Intelligence 8.4.1 IBM Cognos Business Intelligence 8.4 |
| Not Vulnerable: |
IBM Cognos Business Intelligence 10.1 |
Discussion
IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
IBM Cognos Business Intelligence is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to consume all CPU resources, that leads to denial-of-service conditions for legitimate users.
IBM Cognos Business Intelligence 8.4 and 8.4.1 are vulnerable.
IBM Cognos Business Intelligence is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to consume all CPU resources, that leads to denial-of-service conditions for legitimate users.
IBM Cognos Business Intelligence 8.4 and 8.4.1 are vulnerable.
Exploit / POC
IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
Attackers can exploit this issue using readily available tools.
Attackers can exploit this issue using readily available tools.
Solution / Fix
IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
IBM Cognos Business Intelligence CVE-2012-4847 Denial of Service Vulnerability
References:
References: