3.5
CVE-2025-1823
- EPSS 0.01%
- Veröffentlicht 04.02.2026 21:15:57
- Zuletzt bearbeitet 12.02.2026 19:41:38
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Jazz Reporting Service could allow an authenticated user on the host network to cause a denial of service using specially crafted SQL query that consumes excess memory resources.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Jazz Reporting Service Version7.0.3 Update-
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix001
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix002
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix003
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix004
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix005
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix006
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix007
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix008
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix009
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix010
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix011
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix012
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix013
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix014
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix015
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix016
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix017
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix018
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix019
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix020
Ibm ≫ Jazz Reporting Service Version7.1 Update-
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix001
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix002
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix003
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix004-sr1-base
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix005
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix006
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.02 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 3.5 | 2.1 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
|
| psirt@us.ibm.com | 3.5 | 2.1 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
|
CWE-770 Allocation of Resources Without Limits or Throttling
The product allocates a reusable resource or group of resources on behalf of an actor without imposing any restrictions on the size or number of resources that can be allocated, in violation of the intended security policy for that actor.