CVE

Id
95780  
CVE No.
CVE-2016-8960  
Status
Candidate  
Description
IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of a higher-privilege user by intercepting the higher-privilege user"s cookie value from its HTTP request and then reusing it in subsequent requests. IBM Reference #: 1993718.  
Phase
Assigned (20161025)  
Votes
None (candidate not yet proposed)  
Comments