CVE-2024-28778

IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 is vulnerable to exposure of Artifactory API keys. This vulnerability allows users to publish code to private packages or repositories under the name of the organization.
References
Link Resource
https://www.ibm.com/support/pages/node/7179163 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:cognos_controller:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-07 16:15

Updated : 2025-07-03 20:49


NVD link : CVE-2024-28778

Mitre link : CVE-2024-28778

CVE.ORG link : CVE-2024-28778


JSON object : View

Products Affected

microsoft

  • windows

ibm

  • controller
  • cognos_controller
CWE
CWE-798

Use of Hard-coded Credentials