PT-2025-35945 · Ibm · Ibm Jazz Foundation

CVE-2025-25048

·

Publicado

2025-09-04

·

Atualizado

2026-01-09

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM Jazz Foundation versions 7.0.2 through 7.0.2 iFix033 IBM Jazz Foundation versions 7.0.3 through 7.0.3 iFix012 IBM Jazz Foundation versions 7.1.0 through 7.1.0 iFix002
Description An authenticated user may be able to upload files to the system due to improper neutralization of sequences that can resolve to a restricted directory.
Recommendations Update IBM Jazz Foundation to a version later than 7.0.2 iFix033. Update IBM Jazz Foundation to a version later than 7.0.3 iFix012. Update IBM Jazz Foundation to a version later than 7.1.0 iFix002.

Correção

Relative Path Traversal

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-25048

Produtos afetados

Ibm Jazz Foundation