4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Description
IBM License Metric Tool 9.2.0 through 9.2.40
could allow an authenticated user to bypass access controls in the REST API interface and perform unauthorized actions.
could allow an authenticated user to bypass access controls in the REST API interface and perform unauthorized actions.
Basic Information
ID
CVE-2025-36351
Source
ibm
Published
Sep 29, 2025 at 14:27
Affected Product
Vendor
IBM
Product
License Metric Tool
Version
9.2.0
Affected Versions
IBM License Metric Tool 9.2.0