IBM Cognos Command Center 10.2.4.1 and 10.2.5 exposes details the X-AspNet-Version Response Header that could allow an attacker to obtain information of the application environment to conduct further attacks. IBM X-Force ID: 275038.
| Software | From | Fixed in |
|---|---|---|
| ibm / cognos_command_center | 10.2.4.1 | 10.2.4.1.x |
| ibm / cognos_command_center | 10.2.5 | 10.2.5.x |