CVE
- Id
- 95780
- CVE No.
- CVE-2016-8960
- Status
- Candidate
- Description
- IBM Cognos Business Intelligence 10.2 could allow a user with lower privilege Capabilities to adopt the Capabilities of a higher-privilege user by intercepting the higher-privilege user"s cookie value from its HTTP request and then reusing it in subsequent requests. IBM Reference #: 1993718.
- Phase
- Assigned (20161025)
- Votes
- None (candidate not yet proposed)
- Comments