Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Cognos Controller — Vulnerabilities & Security Advisories 43

All 43 CVE vulnerabilities found in Cognos Controller, with AI-generated Chinese analysis, references, and POCs.

This aggregation page collects known vulnerabilities associated with IBM Cognos Controller, focusing on the specific product line within the broader Cognos Business Intelligence suite. The data encompasses various weakness types, including remote code execution, privilege escalation, and information disclosure issues, covering advisories published over the last decade. Readers can use this page to track the vendor's security advisories, understand common weakness classes like cross-site scripting or memory corruption, and review the historical vulnerability landscape of this specific analytics component. By filtering by year or weakness category, users can analyze trends in how IBM has patched defects in Cognos Controller, identifying patterns in recurrence or severity shifts. The page serves as a reference point for security teams evaluating the risk posture of legacy Cognos installations, allowing them to verify if known issues have been addressed in recent updates without having to search individual CVE databases manually.

Vendor: IBM

CVE ID Title CVSS Severity Published
CVE-2025-36326 IBM Controller information disclosure CWE-321 3.7 Low 2025-09-26
CVE-2022-39163 IBM Cognos Controller HTTP response smuggling CWE-444 4.7 Medium 2025-03-26
CVE-2023-47160 IBM Cognos Controller XML external entity injection CWE-611 8.2 High 2025-02-19
CVE-2024-28777 IBM Cognos Controller code execution CWE-502 8.8 High 2025-02-19
CVE-2024-28776 IBM Cognos Controller cross-site scripting CWE-79 5.4 Medium 2025-02-19
CVE-2024-28780 IBM Cognos Controller information disclosure CWE-327 5.9 Medium 2025-02-19
CVE-2024-45081 IBM Cognos Controller incorrect authorization CWE-863 6.5 Medium 2025-02-19
CVE-2024-45084 IBM Cognos Controller CSV injection CWE-1236 8.0 High 2025-02-19
CVE-2024-52902 IBM Cognos Controller information disclosure CWE-798 8.8 High 2025-02-19
CVE-2024-41775 IBM Cognos Controller information disclosure CWE-327 5.9 Medium 2024-12-03
CVE-2024-25020 IBM Cognos Controller file upload CWE-434 5.5 Medium 2024-12-03
CVE-2024-41776 IBM Cognos Controller cross-site request forgery CWE-352 6.5 Medium 2024-12-03
CVE-2024-41777 IBM Cognos Controller hard coded credentials CWE-798 7.5 High 2024-12-03
CVE-2024-45676 IBM Cognos Controller file upload CWE-351 4.3 Medium 2024-12-03
CVE-2024-25036 IBM Cognos Controller authentication bypass CWE-288 4.3 Medium 2024-12-03
CVE-2024-25035 IBM Cognos Controller information disclosure CWE-497 5.3 Medium 2024-12-03
CVE-2024-40691 IBM Cognos Controller file upload CWE-434 8.0 High 2024-12-03
CVE-2024-25019 IBM Cognos Controller file upload CWE-434 5.5 Medium 2024-12-03
CVE-2021-29892 IBM Cognos Controller information disclosure CWE-319 5.9 Medium 2024-12-03
CVE-2023-40695 IBM Cognos Controller session fixation CWE-613 6.3 Medium 2024-05-03
CVE-2021-20451 IBM Cognos Controller SQL injection CWE-89 6.0 Medium 2024-05-03
CVE-2022-22364 IBM Cognos Controller security bypass CWE-350 5.3 Medium 2024-05-03
CVE-2023-28952 IBM Cognos Controller log injection CWE-117 5.3 Medium 2024-05-03
CVE-2023-38724 IBM Cognos Controller SQL injection CWE-89 6.3 Medium 2024-05-03
CVE-2023-40696 IBM Cognos Controller information disclosure CWE-327 5.9 Medium 2024-05-03
CVE-2021-20556 IBM Cognos Controller information disclosure CWE-204 5.3 Medium 2024-05-03
CVE-2023-23474 IBM Cognos Controller information disclosure CWE-209 3.7 Low 2024-05-03
CVE-2021-20450 IBM Cognos Controller information disclosure 4.3 Medium 2024-05-03
CVE-2020-4874 IBM Cognos Controller information disclosure CWE-327 5.9 Medium 2024-05-03
CVE-2020-4879 IBM Cognos Controller 授权问题漏洞 6.5 - 2022-01-21

All 43 known CVE vulnerabilities affecting Cognos Controller with full Chinese analysis, references, and POCs where available.