Home
MEDIUM: 5.2 CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:NDefault status
unaffected
1.1.0 (semver)
affected
Description
IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication is not used in the application.
Problem types
CWE-299 Authentication Bypass Using an Alternate Path or Channel
Product status
1.1.0 (semver)
References
www.ibm.com/support/pages/node/7239635