IBM Controller and IBM Cognos Controller Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in IBM Controller versions 11.1.0 through 11.1.1 and in IBM Cognos Controller versions 11.0.0 through 11.0.1 FP6. This vulnerability allows an authenticated user to cause a denial of service by exploiting improper validation of quantity size inputs.

Impact

Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to become unresponsive or unavailable.

Remediation

Users are advised to upgrade to IBM Controller 11.1.2 or IBM Cognos Controller 11.0.1 FP7. Instructions for downloading these versions are available on the IBM Support website.

Added: Dec 8, 2025, 10:22 PM
Updated: Dec 8, 2025, 10:22 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
4.9
remediation
7.7
relevance
1.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.