- Description
- IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 stores source code on the web server that could aid in further attacks against the system.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 5.3
- Impact score
- 1.4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- Severity
- MEDIUM
- psirt@us.ibm.com
- CWE-540
- Hype score
- Not currently trending
CVE-2025-0923 Source Code Disclosure Vulnerability in IBM Cognos Analytics Multiple Versions https://t.co/huEK3BXZAV
@VulmonFeeds
11 Jun 2025
11 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-0923 IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 stores source code on the web server that could aid in further a… https://t.co/VcEQ0x6LTg
@CVEnew
11 Jun 2025
358 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "792D3191-C65E-41C3-834D-45F162020756",
"versionEndIncluding": "11.2.4",
"versionStartIncluding": "11.2.0"
},
{
"criteria": "cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "24F0D898-0723-4F31-94BA-FC176ECFB86C",
"versionEndIncluding": "12.0.4",
"versionStartIncluding": "12.0.0"
},
{
"criteria": "cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack1:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "07DC144D-62FC-4808-A77A-642871C1F8FC"
},
{
"criteria": "cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2A61B920-B490-48A8-BF00-13B8854683FD"
},
{
"criteria": "cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack3:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1F65BC6D-9A9D-45B9-919B-2855586C4F1B"
}
],
"operator": "OR"
}
]
}
]