CVE-2025-13044
EUVD-2025-20925307.04.2026, 02:16
IBM Concert 1.0.0 through 2.2.0 creates temporary files with predictable names, which allows local users to overwrite arbitrary files via a symlink attack.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | concert | 1.0.0 ≤ 𝑥 ≤ 2.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration