CVE-2024-56344
5.9 MEDIUMPublished 2026-09-18 · Updated 2026-09-19
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
IBM Cognos Analytics 12.0.4 through 12.0.4 FP2, and 12.1.0 through 12.1.3 FP1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses
CWE-327
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- MEDIUMCVE-2025-33147
- MEDIUMCVE-2025-36084
- MEDIUMCVE-2025-36591
- MEDIUMCVE-2026-102824PoC
- LOWCVE-2026-18104
- MEDIUMCVE-2026-18153
- MEDIUMCVE-2026-54147PoC
- LOWCVE-2026-81438
Related by shared AI tags and CWE weakness class. Browse the full archive.