Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-27368

Опубликовано: 12 нояб. 2025
Источник: nvd
CVSS3: 4.3
EPSS Низкий

Описание

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:openpages:9.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:openpages:9.1.0:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00214
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497

Связанные уязвимости

CVSS3: 4.3
github
9 месяцев назад

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

CVSS3: 4.3
fstec
9 месяцев назад

Уязвимость платформы управления рисками на предприятии IBM OpenPages, связанная с раскрытием системных данных неавторизованной для контролируемой области, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 12%
0.00214
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-497