CVE-2023-38009
Severity CVSS v4.0:
Pending analysis
Type:
CWE-295
Improper Certificate Validation
Publication date:
26/01/2025
Last modified:
26/01/2025
Description
IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to the lack of certificate pinning.
Impact
Base Score 3.x
4.20
Severity 3.x
MEDIUM