CVE-2025-1761

CWE-8243 documents3 sources
Severity
7.5HIGH
EPSS
0.0%
top 88.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 8
Latest updateSep 9

Description

IBM Concert Software 1.0.0 through 1.1.0 could allow a remote attacker to obtain sensitive information from allocated memory due to improper clearing of heap memory.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages2 packages

CVEListV5ibm/concert_software1.0.01.1.0
NVDibm/concert1.0.01.1.0

🔴Vulnerability Details

2
GHSA
GHSA-mr34-62h4-mwp5: IBM Concert Software 12025-09-09
CVEList
IBM Concert Software information disclosure2025-09-08
CVE-2025-1761 (HIGH CVSS 7.5) | IBM Concert Software 1.0.0 through | cvebase.io