CVE-2025-0895: IBM Cognos Mobile information disclosure
IBM Cognos Analytics Mobile 1.1 for Android could allow a user with physical access to the device, to obtain sensitive information from debugging code log messages.
Other sources
IBM Cognos Mobile could allow a user with physical access to the device, to obtain sensitive information from debugging code log messages.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0895?
CVE-2025-0895 has a moderate severity rating due to potential exposure of sensitive information.
How do I fix CVE-2025-0895?
To mitigate CVE-2025-0895, ensure that users are educated about physical device security and restrict access to devices.
What systems are affected by CVE-2025-0895?
CVE-2025-0895 affects IBM Cognos Analytics Mobile version 1.1 for Android.
What kind of information is exposed in CVE-2025-0895?
CVE-2025-0895 can expose sensitive information that is logged in debugging code log messages.
Can CVE-2025-0895 be exploited remotely?
CVE-2025-0895 requires physical access to the device to be exploited.