VYPR
Unrated severityNVD Advisory· Published Mar 5, 2013· Updated Jun 16, 2026

CVE-2012-2177

CVE-2012-2177

Description

Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows user-assisted remote attackers to inject arbitrary web script or HTML via vectors related to the search feature.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:ibm:cognos_business_intelligence:10.1:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:ibm:cognos_business_intelligence:10.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:cognos_business_intelligence:10.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:cognos_business_intelligence:10.2:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:cognos_business_intelligence:8.4.1:*:*:*:*:*:*:*
    • (no CPE)range: 8.4.1 < IF1; 10.1 < IF2; 10.1.1 < IF2; 10.2 < IF1

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.