CVE-2025-27906
⚪ Do wiadomości
Wykrycie w IBM Content Navigator umożliwia ujawnienie listy katalogów aplikacji.
CVSS
5.3
EPSS
0.3%
Exploit
none
Vendor
ibm
Opis źródłowy (NVD)
IBM Content Navigator 3.0.11, 3.0.15, 3.1.0, and 3.2.0 could expose the directory listing of the application upon using an application URL. Application files and folders are visible in the browser to a user; however, the contents of the files cannot be read obtained or modified.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 5.3 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.3% |
| Opublikowano (NVD) | 2025-10-14 15:16:08 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-08 12:10:00 UTC |
Referencje
- https://www.ibm.com/support/pages/node/7247854 ([email protected]) [Vendor Advisory]