PT-2025-31657 · Ibm · Ibm Operational Decision Manager
Published
2025-08-01
·
Updated
2025-08-14
·
CVE-2025-2824
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Operational Decision Manager versions 8.11.0.1 through 8.11.1.0
IBM Operational Decision Manager versions 8.12.0.1
IBM Operational Decision Manager versions 9.0.0.1
IBM Operational Decision Manager version 9.5.0
Description
The software contains an open redirect flaw that could allow a remote attacker to conduct phishing attacks. An attacker could exploit this issue by persuading a victim to visit a specially crafted website, which could redirect the user to a malicious website that appears trusted. This could allow the attacker to obtain sensitive information or conduct further attacks.
Recommendations
IBM Operational Decision Manager version 8.11.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
IBM Operational Decision Manager version 8.11.1.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
IBM Operational Decision Manager version 8.12.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
IBM Operational Decision Manager version 9.0.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
IBM Operational Decision Manager version 9.5.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Operational Decision Manager