IBM Product Security Update Advisory
Overview
We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-1994, CVE-2025-2697
IBM Cognos Command Center Version: 10.2.4.1
IBM Cognos Command Center Version: 10.2.5
Resolved Vulnerabilities
Arbitrary Code Execution Vulnerability in IBM Cognos Command Center (CVE-2025-1994)
Open Redirect Vulnerability in IBM Cognos Command Center (CVE-2025-2697)
Vulnerability Patches
Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-1994, CVE-2025-2697
IBM Cognos Command Center Version: 10.2.5 FP1 IF1 [2]
References
[1] Security Bulletin: Multiple vulnerabilities in IBM Cognos Command Center
https://www.ibm.com/support/pages/node/7242159
[2] IBM Cognos Command Center 10.2.5 FP1 IF1 available for download from Fix Central
https://www.ibm.com/support/pages/node/7239167