CVE-2025-0923

IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 stores source code on the web server that could aid in further attacks against the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7234674 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack1:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack2:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack3:*:*:*:*:*:*

History

17 Jun 2025, 20:33

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7234674 - () https://www.ibm.com/support/pages/node/7234674 - Vendor Advisory
CPE cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack1:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack2:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_analytics:11.2.4:fixpack3:*:*:*:*:*:*
First Time Ibm cognos Analytics
Ibm

12 Jun 2025, 16:06

Type Values Removed Values Added
Summary
  • (es) IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3 y 12.0.4 almacenan código fuente en el servidor web que podría contribuir a futuros ataques contra el sistema.

11 Jun 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-11 18:15

Updated : 2025-06-17 20:33


NVD link : CVE-2025-0923

Mitre link : CVE-2025-0923

CVE.ORG link : CVE-2025-0923


JSON object : View

Products Affected

ibm

  • cognos_analytics
CWE
CWE-540

Inclusion of Sensitive Information in Source Code