ZeroHour

CVE-2025-14811

CVSS 3.1
5.9 medium
EPSS
<1%p11
Published
()
Modified
Description

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.

Vendors
ibm
Products
sterling partner engagement manager
Weakness
CWE-598
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.