216.73.217.22

CVE-2025-36057

· Published 21/07/2025 19:15 · Modified 22/07/2025 13:05

Labels: CVE-2025-36057 2025-07-21CVE-2025-36057CWE-299[email protected]

Essential information

Published
21/07/2025 19:15
Modified
22/07/2025 13:05
Author
Creator
CVSS
5.2 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N

CVSS metrics

Description

IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication is not used in the application.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ibm / cognos analytics mobile cpe:2.3:a:ibm:cognos_analytics_mobile:1.1.0-1.1.22:*:*:*:*:*:*:*

References