Known vulnerabilities in IBM Cognos Command Center 10.2.5 FP1 IF3

Version: 10.2.5 FP1 IF3
Software CPE: cpe:2.3:a:ibm_corporation:ibm_cognos_command_center:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting IBM Cognos Command Center version 10.2.5 FP1 IF3 IBM Cognos Command Center 10.2.5 FP1 IF3 is affected by 2 vulnerabilities: 1 medium, 1 low Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU125787 - Improper Control of Generation of Code ('Code Injection')
CVE-2026-34197
CWE-94 Medium
Public exploit available
Exploited
10.2.5 FP1 IF4 10.04.2026 SB2026041071
SB2026050348
SB2026050349
and 8 more
#VU125786 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-33227
CWE-22 Low
No
No
10.2.5 FP1 IF4 10.04.2026 SB2026041071
SB2026050348
SB2026050349
and 5 more