CVE-2025-33147: IBM Cognos Analytics vulnerability
Published Sep 11, 2026
·Updated
IBM Cognos Analytics Certified Containers could allow an attacker on a shared network to obtain sensitive information caused by insecure network communication.
Affected Software
2 affected components
IBM Cognos Analytics<=12.1.0 - 12.1.3 FP1
IBM Cognos Analytics<=12.0.4 - 12.0.4 FP2
Event History
Sep 11, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Who is exposed to this issue?
Deployments of IBM Cognos Analytics Certified Containers are exposed when an attacker can access the same shared network and observe insecure network communications.
2
What does an attacker need to exploit this vulnerability?
The attacker needs a position on a shared network with the affected deployment. The disclosed impact is the ability to obtain sensitive information from insecure network communication.