IBM OpenPages with Watson 8.3 and 9.0
is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used for the administration of OpenPages. An authenticated user is able to obtain certain information about system configuration and internal state which is only intended for administrators of the system.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7239155 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
14 Jul 2025, 17:51
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-08 19:15
Updated : 2025-07-14 17:51
NVD link : CVE-2025-27369
Mitre link : CVE-2025-27369
CVE.ORG link : CVE-2025-27369
JSON object : View
Products Affected
microsoft
- windows
linux
- linux_kernel
ibm
- openpages_with_watson
CWE
CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere