Back

HIGH

IBM Cognos Command Center code execution

Published Aug 26, 2025

Description

IBM Cognos Command Center 10.2.4.1 and 10.2.5

could allow a local user to execute arbitrary code on the system due to the use of unsafe use of the BinaryFormatter function.

Affected products

Remediation

Vendor solution

IBM strongly recommends addressing the vulnerability now by upgrading.

Affected Product(s)VersionFixIBM Cognos Command Center10.2.5 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167 IBM Cognos Command Center10.2.4.1 IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central https://www.ibm.com/support/pages/node/7239167

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner ibm
Published Aug 26, 2025
Updated Aug 26, 2025
Reserved Mar 5, 2025

CISA Vulnrichment

Updated Aug 26, 2025

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner ibm
Published Aug 26, 2025
Updated Aug 26, 2025

GitHub

No data