CVE-2025-1494

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/08/2025
Last modified:
02/09/2025

Description

IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:cognos_command_center:10.2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_command_center:10.2.5:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools