← Back

CVE-2025-2139

nvd nist
Published: Oct 12, 2025Modified: Oct 16, 2025

JSON object

Loading...
3.5
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Exploitability: 2.1 / Impact: 1.4
Source: psirt@us.ibm.com (Secondary)

Description

IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to delete reviews from other users due to client-side enforcement of server-side security.

Affected (3)

1 product
Configuration A
3 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.2
Version 7.0.3
Version 7.1
Running on/withPlatform Versions
Ibm
Aix
All versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.