PT-2025-23047 · Ibm · Ibm Security Guardium
CVE-2025-25029
·
Publicado
2025-05-27
·
Atualizado
2025-06-04
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Security Guardium version 12.0
Description
The issue allows a privileged user to download any file on the system due to improper escaping of input.
Recommendations
For IBM Security Guardium version 12.0, consider restricting file access privileges to minimize the risk of exploitation until a patch is available.
Correção
LPE
Improper Encoding or Escaping of Output
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Security Guardium