4.8
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Description
IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an attacker to access unauthorized content or perform unauthorized actions using man in the middle techniques due to improper access controls.
Basic Information
ID
CVE-2025-36093
Source
ibm
Published
Nov 3, 2025 at 15:54
Modified
Nov 3, 2025 at 16:25
Affected Product
Vendor
IBM
Product
Cloud Pak For Business Automation
Version
25.0.0
Affected Versions
IBM Cloud Pak For Business Automation 25.0.0
IBM Cloud Pak For Business Automation 24.0.1
IBM Cloud Pak For Business Automation 24.0.0
IBM Cloud Pak For Business Automation 24.0.1
IBM Cloud Pak For Business Automation 24.0.0