PT-2025-30322 · Ibm · Ibm Cognos Analytics Mobile
Published
2025-07-21
·
Updated
2025-08-07
·
CVE-2025-36057
CVSS v3.1
5.2
Medium
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Cognos Analytics Mobile (iOS) versions 1.1.0 through 1.1.22
Description
The application uses the Local Authentication Framework library despite not utilizing biometric authentication. This results in an authentication bypass.
Recommendations
IBM Cognos Analytics Mobile (iOS) versions 1.1.0 through 1.1.22: Remove the unnecessary Local Authentication Framework library.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Cognos Analytics Mobile