IBM Cognos Mobile
cpe:2.3:a:ibm:cognos_analytics_mobile:*:*:*:*:android:*:*
- 1.1
A vulnerability allowing information disclosure through man-in-the-middle techniques has been identified in IBM Cognos Mobile Client version 1.1 for iOS. This issue arises from the absence of certificate pinning, which could otherwise prevent such interception of data.
The vulnerability could be exploited to intercept and potentially alter communications between the client and the server, leading to unauthorized access to sensitive information.
Users are advised to upgrade to the latest version of IBM Cognos Analytics Mobile from the Apple App Store.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.