6.5
CVE-2025-64650 - IBM Storage Defender - Resiliency Service Information Disclosure
IBM Storage Defender - Resiliency Service 2.0.0 through 2.0.18 could disclose sensitive user credentials in log files.
4.6
CVE-2025-12832 - IBM InfoSphere Information Server Server-Side Request Forgery
IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 is vulnerable to server-side request forgery (SSRF). This may allow an authenticatedย attacker to send unauthorized requests from the system, potentially leading to network enumeration orย facilitating other attacks.
0.0
CVE-2025-67514 -
Vulnerability is dependency-based.
0.0
CVE-2025-67512 -
The vulnerability is dependency-based.
6.5
CVE-2025-36017 - IBM Controller Information Disclosure
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6ย stores unencrypted sensitive information in environmental variables files which can be obtained by an authenticated user.
6.3
CVE-2025-14276 - Ilevia EVE X1 Server leaf_search.php command injection
A vulnerability was determined in Ilevia EVE X1 Server up to 4.6.5.0.eden. Impacted is an unknown function of the file /ajax/php/leaf_search.php. This manipulation of the argument line causes command injection. The attack can be initiated remotely. A high degree of complexity is needed for the attaโฆ
2.7
CVE-2025-36102 - IBM Controller Validation Bypass
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 could allow a privileged user to bypass validation, passing user input into the application as trusted data, due to client-side enforcement of server-side security.
4.3
CVE-2025-33111 - IBM Controller Information Disclosure
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 is vulnerable to creation of temporary files without atomic operations which may expose sensitive information to an authenticated user due to race condition attacks.
6.5
CVE-2025-36015 - IBM Controller Denial of Service
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 could allow an authenticated user to cause a denial of service due to improper validation of a specified quantity size input.
0.0
CVE-2025-67503 -
This CVE is a duplicate of another CVE.