CVE-2025-36187

EUVD-2025-209040
IBM Knowledge Catalog Standard Cartridge 5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.1, 5.1.1, 5,1.2, 5.1.3, 5.2.0, 5.2.1 stores potentially sensitive information in log files that could be read by a local privileged user.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.4 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 3%
Affected Products (NVD)
VendorProductVersion
ibmknowledge_catalog
5.0.0
ibmknowledge_catalog
5.0.1
ibmknowledge_catalog
5.0.2
ibmknowledge_catalog
5.0.3
ibmknowledge_catalog
5.1
ibmknowledge_catalog
5.1.1
ibmknowledge_catalog
5.1.2
ibmknowledge_catalog
5.1.3
ibmknowledge_catalog
5.2.0
ibmknowledge_catalog
5.2.1
𝑥
= Vulnerable software versions