High severity8.2NVD Advisory· Published Jan 7, 2025· Updated Jun 17, 2026
CVE-2024-40702
CVE-2024-40702
Description
IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow an unauthorized user to obtain valid tokens to gain access to protected resources due to improper certificate validation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
411.0.0 - 11.0.1, 11.1.0+ 3 more
- (no CPE)range: 11.0.0 - 11.0.1, 11.1.0
- cpe:2.3:a:ibm:cognos_controller:11.0.0:*:*:*:*:*:*:*range: 11.0.0
- cpe:2.3:a:ibm:cognos_controller:*:*:*:*:*:*:*:*range: >=11.0.0,<=11.0.1
- cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7179163nvdVendor Advisory
News mentions
0No linked articles in our index yet.