← Back to CVEs
CVE-2014-0863
N/ADescription
The client in IBM Cognos TM1 9.5.2.3 before IF5, 10.1.1.2 before IF1, 10.2.0.2 before IF1, and 10.2.2.0 before IF1 stores obfuscated passwords in memory, which allows remote authenticated users to obtain sensitive cleartext information via an unspecified security tool.
CVE Details
CVSS v3.1 ScoreN/A
Published9/5/2014
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0
Affected Products
ibm:cognos_tm1
Weaknesses (CWE)
CWE-255
References
http://www-01.ibm.com/support/docview.wss?uid=swg21682397(psirt@us.ibm.com)
http://www.securityfocus.com/bid/69594(psirt@us.ibm.com)
http://www.securitytracker.com/id/1030805(psirt@us.ibm.com)
https://exchange.xforce.ibmcloud.com/vulnerabilities/90937(psirt@us.ibm.com)
http://www-01.ibm.com/support/docview.wss?uid=swg21682397(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/69594(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1030805(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/90937(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.