CVE-2024-55907

LOW

IBM Cognos Analytics Mobile <1.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

IBM Cognos Analytics Mobile 1.1 for iOS application could allow an attacker to reverse engineer the codebase to gain knowledge about the programming technique, interface, class definitions, algorithms and functions used due to weak obfuscation.

References (1)

Core 1
Core References
Vendor Advisory vendor-advisory patch
https://www.ibm.com/support/pages/node/7184429

Scores

CVSS v3 2.0
EPSS 0.0014
EPSS Percentile 34.0%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-540
Status published
Products (1)
ibm/cognos_analytics_mobile 1.1.0 - 1.1.21
Published Mar 02, 2025
Tracked Since Feb 18, 2026