#VU105338 Inclusion of Sensitive Information in Source Code in Cognos Analytics Mobile (iOS) - CVE-2024-55907
Published: March 5, 2025
Cognos Analytics Mobile (iOS)
IBM Corporation
Description
The vulnerability allows an attacker with physical access to gain access to potentially sensitive information.
The vulnerability exists due to weak obfuscation. An attacker with physical access can reverse engineer the codebase to gain knowledge about the programming technique, interface, class definitions, algorithms and functions used due to weak obfuscation.