APP: IBM Cognos Express Hardcoded Credentials Denial Of Service

This signature detects attempts to exploit a known vulnerability against IBM Cognos Server. A successful attack can lead to a remote code execution within the context of the affected application.

Extended Description

IBM Cognos Express is prone to a security-bypass vulnerability. Successful exploits may allow attackers to bypass security restrictions and execute arbitrary code with the privileges of the vulnerable application. This issue affects IBM Cognos Express 9.0.

Affected Products

Ibm cognos_express

Short Name
APP:IBM:COGNOS-BACKDOOR
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
CVE-2010-0557 Cognos Credentials Denial Express Hardcoded IBM Of Service bid:38084
Release Date
10/13/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Ibm

CVSS Score

7.5

Found a potential security threat?