PT-2025-31657 · Ibm · Ibm Operational Decision Manager

Published

2025-08-01

·

Updated

2025-08-14

·

CVE-2025-2824

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:C/A:N
Name of the Vulnerable Software and Affected Versions IBM Operational Decision Manager versions 8.11.0.1 through 8.11.1.0 IBM Operational Decision Manager versions 8.12.0.1 IBM Operational Decision Manager versions 9.0.0.1 IBM Operational Decision Manager version 9.5.0
Description The software contains an open redirect flaw that could allow a remote attacker to conduct phishing attacks. An attacker could exploit this issue by persuading a victim to visit a specially crafted website, which could redirect the user to a malicious website that appears trusted. This could allow the attacker to obtain sensitive information or conduct further attacks.
Recommendations IBM Operational Decision Manager version 8.11.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Operational Decision Manager version 8.11.1.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Operational Decision Manager version 8.12.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Operational Decision Manager version 9.0.0.1: At the moment, there is no information about a newer version that contains a fix for this vulnerability. IBM Operational Decision Manager version 9.5.0: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Open Redirect

Weakness Enumeration

Related Identifiers

BDU:2025-10398
CVE-2025-2824

Affected Products

Ibm Operational Decision Manager