← Back

CVE-2025-2140

nvd nist
Published: Oct 12, 2025Modified: Oct 16, 2025

JSON object

Loading...
5.7
Vector
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 2.1 / Impact: 3.6
Source: psirt@us.ibm.com (Secondary)

Description

IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to spoof email identity of the sender due to improper verification of source data.

Affected (3)

1 product
Configuration A
3 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Ibm
Version 7.0.2
Version 7.0.3
Version 7.1
Running on/withPlatform Versions
Ibm
Aix
All versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.