3.5
CVE-2025-27550
- EPSS 0.01%
- Veröffentlicht 04.02.2026 21:15:57
- Zuletzt bearbeitet 23.02.2026 18:22:37
- Quelle psirt@us.ibm.com
- CVE-Watchlists
- Unerledigt
IBM Jazz Reporting Service could allow an authenticated user on the host network to obtain sensitive information about other projects that reside on the server.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Jazz Reporting Service Version7.0.3 Update-
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix001
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix002
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix003
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix004
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix005
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix006
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix007
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix008
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix009
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix010
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix011
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix012
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix013
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix014
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix015
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix016
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix017
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix018
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix019
Ibm ≫ Jazz Reporting Service Version7.0.3 Updateifix020
Ibm ≫ Jazz Reporting Service Version7.1 Update-
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix001
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix002
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix003
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix004-sr1-base
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix005
Ibm ≫ Jazz Reporting Service Version7.1 Updateifix006
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.01% | 0.01 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| psirt@us.ibm.com | 3.5 | 2.1 | 1.4 |
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
|
CWE-497 Exposure of Sensitive System Information to an Unauthorized Control Sphere
The product does not properly prevent sensitive system-level information from being accessed by unauthorized actors who do not have the same level of access to the underlying system as the product does.