IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22
is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication is not used in the application.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7239635 | Vendor Advisory |
Configurations
History
07 Aug 2025, 00:43
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.ibm.com/support/pages/node/7239635 - Vendor Advisory | |
First Time |
Ibm cognos Analytics Mobile
Ibm |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.6 |
CPE | cpe:2.3:a:ibm:cognos_analytics_mobile:*:*:*:*:*:iphone_os:*:* |
21 Jul 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-21 19:15
Updated : 2025-08-07 00:43
NVD link : CVE-2025-36057
Mitre link : CVE-2025-36057
JSON object : View
Products Affected
ibm
- cognos_analytics_mobile
CWE
CWE-299
Improper Check for Certificate Revocation