CVE-2016-9710: IBM Cognos Business Intelligence Server

Medium severity, CVSS 5.3. EPSS: 1.6% chance of exploitation in the next 30 days.

IBM Predictive Solutions Foundation (formerly PMQ) could allow a remote attacker to include arbitrary files. A remote attacker could send a specially-crafted URL to specify a file from the local system, which could allow the attacker to obtain sensitive information. IBM X-Force ID: 119618.

Affected products

  • IBM Cognos Business Intelligence Server: version 10.1.1 only; version 10.2.0 only; version 10.2.1 only; version 10.2.1.1 only; version 10.2.2 only

Published 2017-06-07. Last modified 2026-06-17.