IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 is vulnerable to creation of temporary files without atomic operations which may expose sensitive information to an authenticated user due to race condition attacks.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7253273 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2025-12-08 22:15
Updated : 2025-12-10 18:13
NVD link : CVE-2025-33111
Mitre link : CVE-2025-33111
CVE.ORG link : CVE-2025-33111
JSON object : View
Products Affected
ibm
- controller
- cognos_controller
CWE
CWE-379
Creation of Temporary File in Directory with Insecure Permissions
