PT-2026-3584 · Ibm · Ibm Concert
CVE-2025-33015
·
Publicado
2026-01-20
·
Atualizado
2026-01-20
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Concert versions 1.0.0 through 2.1.0
Description
The software does not validate the content of files uploaded through its web interface, allowing for malicious file uploads.
Recommendations
IBM Concert versions 1.0.0 through 2.1.0 should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Unrestricted File Upload
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Concert