CVE-2025-33101

CWE-2443 documents3 sources
Severity
5.9MEDIUM
EPSS
0.0%
top 89.43%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 17

Description

IBM Concert 1.0.0 through 2.1.0 could allow an attacker to obtain sensitive information using man in the middle techniques due to improper clearing of heap memory.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages2 packages

NVDibm/concert1.0.02.2.0
CVEListV5ibm/concert1.0.02.1.0

🔴Vulnerability Details

2
CVEList
Multiple Vulnerabilities in IBM Concert Software.2026-02-17
GHSA
GHSA-p2xq-4rwg-xcp7: IBM Concert 12026-02-17
CVE-2025-33101 (MEDIUM CVSS 5.9) | IBM Concert 1.0.0 through 2.1.0 cou | cvebase.io