CVE-2024-51466 – IBM Cognos Analytics EL Injection

CVE ID : CVE-2024-51466

Published : Dec. 20, 2024, 2:15 p.m. | 1 hour, 1 minute ago

Description : IBM Cognos Analytics 11.2.0 through 11.2.4 FP4 and

12.0.0 through 12.0.4

is vulnerable to an Expression Language (EL) Injection vulnerability. A remote attacker could exploit this vulnerability to expose sensitive information, consume memory resources, and/or cause the server to crash when using a specially crafted EL statement.

Severity: 9.0 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2024-51466 – IBM Cognos Analytics EL Injection