← Back

CVE-2025-27368

nvd nist
Published: Nov 12, 2025Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: psirt@us.ibm.com (Secondary)

Description

IBM OpenPages 9.0 and 9.1 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used by the user interface of OpenPages. An authenticated user is able to obtain certain information about system metadata for areas beyond what the user is intended to view.

Affected (2)

Products: Ibm: Openpages
1 product
Openpages
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 9.0.0
Version 9.1.0

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.