could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the BinaryFormatter function.
No analysis available yet.
Vendor Solution
IBM strongly recommends addressing the vulnerability now by upgrading. Affected Product(s)VersionFixIBM Cognos Command Center10.2.5 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167 IBM Cognos Command Center10.2.4.1 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-25811 | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the BinaryFormatter function. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7242159 |
|
Tue, 26 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 Aug 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the BinaryFormatter function. | |
| Title | IBM Cognos Command Center code execution | |
| First Time appeared |
Ibm
Ibm cognos Command Center |
|
| Weaknesses | CWE-242 | |
| CPEs | cpe:2.3:a:ibm:cognos_command_center:10.2.4.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:cognos_command_center:10.2.5:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm cognos Command Center |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-26T17:35:50.942Z
Reserved: 2025-03-05T16:10:32.378Z
Link: CVE-2025-1994
Updated: 2025-08-26T17:35:48.326Z
Status : Analyzed
Published: 2025-08-26T17:15:36.827
Modified: 2025-09-02T18:07:05.010
Link: CVE-2025-1994
No data.
OpenCVE Enrichment
No data.
EUVD