VYPR
Unrated severityNVD Advisory· Published Jul 21, 2025· Updated Aug 18, 2025

IBM Cognos Analytics Mobile (iOS) information disclosure

CVE-2025-36106

Description

IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to view and modify information coming to and from the application which could then be used to access confidential information on the device or network by using a the deprecated or misconfigured AFNetworking library at runtime.

Affected products

2
  • IBM/Cognos Analytics Mobilev5
    cpe:2.3:a:ibm:cognos_analytics_mobile:1.1.0:*:*:*:*:ios:*:*
    Range: 1.1.0
  • Range: 1.1.0 - 1.1.22

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.