4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Description
IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 is vulnerable to creation of temporary files without atomic operations which may expose sensitive information to an authenticated user due to race condition attacks.
Basic Information
ID
CVE-2025-33111
Source
ibm
Published
Dec 8, 2025 at 21:28
Affected Product
Vendor
IBM
Product
Controller
Version
11.1.0
Affected Versions
IBM Controller 11.1.0
IBM Cognos Controller 11.0.0
IBM Cognos Controller 11.0.0