CVE-2025-2669
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
Exploitability: 1.2 / Impact: 5.2
Source: NVD
Description
IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data versions 4.8, 5.0, 5.1, 5.2, 5.3 could allow a privileged user to perform operations and obtain sensitive information outside of their authority due to improper token validation.
Affected (2)
Products: Ibm: Db2, Db2 Warehouse
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| From 4.8 to 5.4 | |
| From 4.8 to 5.4 |
| Running on/with | Platform Versions |
|---|---|
Ibm Cloud Pak For Data | All versions |
References (1)
Timeline
No history available yet.