No analysis available yet.
Vendor Solution
IBM strongly recommends addressing the vulnerability now by upgrading. Affected Product(s)VersionFixIBM Cognos Command Center10.2.5 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167 IBM Cognos Command Center10.2.4.1 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25814 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7242159 |
|
Tue, 26 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 Aug 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim. | |
| Title | IBM Cognos Command Center clickjacking | |
| First Time appeared |
Ibm
Ibm cognos Command Center |
|
| Weaknesses | CWE-1021 | |
| CPEs | cpe:2.3:a:ibm:cognos_command_center:10.2.4.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_command_center:10.2.5:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm cognos Command Center |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-26T17:36:26.140Z
Reserved: 2025-02-20T02:17:49.762Z
Link: CVE-2025-1494
Updated: 2025-08-26T17:36:23.687Z
Status : Analyzed
Published: 2025-08-26T17:15:36.587
Modified: 2025-09-02T18:07:42.490
Link: CVE-2025-1494
No data.
OpenCVE Enrichment
No data.
EUVD