IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
History

Tue, 26 Aug 2025 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 26 Aug 2025 17:00:00 +0000

Type Values Removed Values Added
Description IBM Cognos Command Center 10.2.4.1 and 10.2.5 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim's click actions and possibly launch further attacks against the victim.
Title IBM Cognos Command Center clickjacking
First Time appeared Ibm
Ibm cognos Command Center
Weaknesses CWE-1021
CPEs cpe:2.3:a:ibm:cognos_command_center:10.2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:cognos_command_center:10.2.5:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm cognos Command Center
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-08-26T16:45:35.076Z

Updated: 2025-08-26T17:36:26.140Z

Reserved: 2025-02-20T02:17:49.762Z

Link: CVE-2025-1494

cve-icon Vulnrichment

Updated: 2025-08-26T17:36:23.687Z

cve-icon NVD

Status : Received

Published: 2025-08-26T17:15:36.587

Modified: 2025-08-26T17:15:36.587

Link: CVE-2025-1494

cve-icon Redhat

No data.