MEDIUM🇬🇧 English

CVE-2025-64647

CVSS 5.9v3.1pub. 2026-03-25upd. 2026-03-26

IBM Concert w wersjach od 1.0.0 do 2.2.0 wykorzystuje słabsze niż oczekiwane algorytmy kryptograficzne, co może pozwolić atakującemu na odszyfrowanie wysoko wrażliwych informacji.

Pokaż oryginał (EN)

IBM Concert 1.0.0 through 2.2.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information

CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
  • IBM Concert

    APP
    Ibm
    1.0.0 – 2.2.0
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
CWE
Referencje

Powiązane podatności

CVE-2026-3627CRITICAL9.1ten sam produkt

IBM Concert 1.0.0 through 2.3.1 is vulnerable to SQL injection. A remote attacker could send specially crafted...

CVE-2025-33088HIGH7.4ten sam produkt

IBM Concert 1.0.0 through 2.1.0 could allow a local user with specific knowledge about the system's architectu...

CVE-2025-33015HIGH8.8ten sam produkt

IBM Concert 1.0.0 through 2.1.0 is vulnerable to malicious file upload by not validating the content of the fi...

CVE-2025-12771HIGH7.8ten sam produkt

IBM Concert 1.0.0 through 2.1.0 is vulnerable to a stack-based buffer overflow, caused by improper bounds chec...

CVE-2025-64645HIGH7.7ten sam produkt

IBM Concert 1.0.0 through 2.1.0 could allow a local user to escalate their privileges due to a race condition ...