← Back

CVE-2025-36361

nvd nist
Published: Oct 24, 2025Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

IBM App Connect Enterprise 13.0.1.0 through 13.0.4.2, and 12.0.1.0 through 12.0.12.17 could allow an authenticated user to perform unauthorized actions on customer defined resources due to missing authorization.

Affected (2)

1 product
App Connect Enterprise
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 12.0.1.0 to 12.0.12.17
From 13.0.1.0 to 13.0.4.2

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.