IBM Cloud Pak for Security (CP4S) 1.5.0.0 and 1.5.0.1 could allow a user to obtain sensitive information or perform actions they should not have access to due to incorrect authorization mechanisms. IBM X-Force ID: 198919.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:NIBM Cloud Pak For Security
APPIbm1.5.0.01.5.0.1
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2025-25022CRITICAL9.6PL ✓same product
IBM QRadar Suite / Cloud Pak for Security: ujawnienie danych w plikach konfiguracyjnych
CVE-2021-20578CRITICAL9.8PL ✓same product
IBM Cloud Pak for Security — pominięcie uwierzytelniania (Auth Bypass)
CVE-2020-4627CRITICAL9.0PL ✓same product
CSV Injection w IBM Cloud Pak for Security umożliwia zdalne wykonanie kodu
CVE-2025-25021HIGH7.2same product
IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0...
CVE-2023-47726HIGH7.1same product
IBM QRadar Suite Software 1.10.12.0 through 1.10.21.0 and IBM Cloud Pak for Security 1.10.12.0 through 1.10.21...