PT-2025-30590 · Ibm · Engineering Systems Design Rhapsody

Published

2025-07-23

·

Updated

2025-07-23

·

CVE-2025-33020

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Engineering Systems Design Rhapsody versions 9.0.2, 10.0, and 10.0.1
Description IBM Engineering Systems Design Rhapsody transmits sensitive information without encryption, potentially allowing an attacker to obtain highly sensitive information.
Recommendations IBM Engineering Systems Design Rhapsody version 9.0.2: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Engineering Systems Design Rhapsody version 10.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Engineering Systems Design Rhapsody version 10.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Encryption of Sensitive Data

Weakness Enumeration

Related Identifiers

CVE-2025-33020

Affected Products

Engineering Systems Design Rhapsody