CVE-2016-0381: IBM Cognos TM1

Medium severity, CVSS 4.3. EPSS: 1% chance of exploitation in the next 30 days.

IBM Cognos TM1 10.2.2 before FP5, when the host/pmhub/pm/admin AdminGroups setting is empty, allows remote authenticated users to cause a denial of service (configuration outage) via a non-empty value.

Affected products

  • IBM Cognos TM1: up to and including 10.2.2

Published 2016-05-15. Last modified 2026-06-17.