Skip to content

CVE-2013-5443

Cross-site request forgery (CSRF) vulnerability in IBM Cognos Express 9.0 before IFIX 2, 9.5 before IFIX 2, 10.1 before IFIX 2, and 10.2.1 before FP1 allows remote attackers to hijack the authentication of arbitrary users.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0010 (0.1%)
Percentile: 27.7%
EPSS: 2026-05-06

Affects

ibm:cognos_express

Technical description

Cross-site request forgery (CSRF) vulnerability in IBM Cognos Express 9.0 before IFIX 2, 9.5 before IFIX 2, 10.1 before IFIX 2, and 10.2.1 before FP1 allows remote attackers to hijack the authentication of arbitrary users.

Published: 3/25/2014, 8:55:06 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam