Cognos Analytics Mobile
Vendor:
First CVE: Feb 14, 2022 · Active for 4 years
9
Total CVEs
More Total CVEs than 88% of tracked products
3.0
Avg CVEs / Year
Higher CVE frequency than 78% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Cognos Analytics Mobile over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 14, 2022
4 years ago
Most Recent CVE
Jul 21, 2025
372 days ago
CVE Severity & Scoring
Cognos Analytics Mobile9 CVEs
11%
44%
44%
All CVEs353,173 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network7 (77.8%)
Unknown0 (0.0%)
Physical2 (22.2%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None8 (88.9%)
Unknown0 (0.0%)
Required1 (11.1%)
Privileges Required
Low1 (11.1%)
High0 (0.0%)
None8 (88.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (9 CVEs).
9 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-36106HIGH IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to view and modify information coming to and from the application which could then be used to ac | Jul 21, 2025 | 8.2 | 22 | NO | NO |
CVE-2021-39080MEDIUM Due to weak obfuscation, IBM Cognos Analytics Mobile for Android application prior to version 1.1.14 , an attacker could be able to reverse engineer the codebase to gain knowledge | Feb 14, 2022 | 6.5 | 22 | NO | NO |
CVE-2025-36062HIGH IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22
could be vulnerable to information exposure due to the use of unencrypted network traffic. | Jul 21, 2025 | 7.5 | 21 | NO | NO |
CVE-2025-36107HIGH IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 could allow malicious actors to obtain sensitive information due to the cleartext transmission of data. | Jul 21, 2025 | 7.5 | 21 | NO | NO |
CVE-2021-39081HIGH IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. | Dec 19, 2024 | 7.5 | 19 | NO | NO |
CVE-2021-39079MEDIUM IBM Cognos Analytics Mobile for Android applications prior to version 1.1.14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript co | Feb 14, 2022 | 5.4 | 19 | NO | NO |
CVE-2024-55907MEDIUM IBM Cognos Analytics Mobile 1.1 for iOS application could allow an attacker to reverse engineer the codebase to gain knowledge about the programming technique, interface, class def | Mar 2, 2025 | 5.3 | 18 | NO | NO |
CVE-2025-36057MEDIUM IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22
is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric | Jul 21, 2025 | 4.6 | 15 | NO | NO |
IBM Cognos Analytics Mobile 1.1 for Android could allow a user with physical access to the device, to obtain sensitive information from debugging code log messages. | Mar 2, 2025 | 2.4 | 13 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (9 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (9 CVEs).
Media Mentions
Signals from CVEs in this product scope (9 CVEs).
Top CNAs Publishing CVEs For Cognos Analytics Mobile
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.1.14 | 1 | 7.5 | 0.3% | 0 | 0 |