9.8
CVE-2025-13375
- EPSS 0.07%
- Veröffentlicht 04.02.2026 20:31:13
- Zuletzt bearbeitet 15.04.2026 00:35:42
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Common Cryptographic Architecture Arbitrary Command Execution
IBM Common Cryptographic Architecture (CCA) 7.5.52 and 8.4.82 could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerIBM
≫
Produkt
Common Cryptographic Architecture
Default Statusunaffected
Version
7.5.52
Status
affected
Version
8.4.82
Status
affected
HerstellerIBM
≫
Produkt
IBM 4769 Developers Toolkit
Default Statusunaffected
Version
7.5.52
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.07% | 0.203 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@us.ibm.com | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-250 Execution with Unnecessary Privileges
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.