No advisories yet.
Solution
IBM strongly recommends addressing the vulnerability now. Affected Product(s)Version(s)Fix VersionIBM Cognos Analytics12.1.0, 12.1.1, 12.1.2, 12.1.3, 12.1.3 FP1 12.1.3 FP2 https://www.ibm.com/support/pages/node/7283969 IBM Cognos Analytics12.0.4 - 12.0.4 FP2 12.0.4 FP3 https://www.ibm.com/support/pages/node/7269268
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7287209 |
|
Fri, 18 Sep 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Cognos Analytics 12.1.0 through 12.1.3 FP1, and 12.0.4 through 12.0.4 FP2 stores sensitive information in source code could be used by an authenticated user in further attacks against the system. | |
| Title | IBM Cognos Analytics versions 12.0.4 and 12.1.3 is affected by security vulnerabilities | |
| First Time appeared |
Ibm
Ibm cognos Analytics |
|
| Weaknesses | CWE-540 | |
| CPEs | cpe:2.3:a:ibm:cognos_analytics:12.0.4:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_analytics:12.1.3:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm cognos Analytics |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-09-18T16:45:07.526Z
Reserved: 2025-04-15T21:16:13.122Z
Link: CVE-2025-36076
No data.
Status : Received
Published: 2026-09-18T16:17:02.927
Modified: 2026-09-18T17:16:56.333
Link: CVE-2025-36076
No data.
OpenCVE Enrichment
No data.