IBM Cognos Analytics Mobile (iOS) authentication bypass
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.2epss 0.2%
exploitation probability
0.2%top 92% of all CVEs
observed exploitation
nono source reports it
IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22
is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication is not used in the application.
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N
Affected products
IBM · Cognos Analytics Mobile