IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 stores unencrypted sensitive information in environmental variables files which can be obtained by an authenticated user.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7253283 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2025-12-08 22:15
Updated : 2025-12-10 18:08
NVD link : CVE-2025-36017
Mitre link : CVE-2025-36017
CVE.ORG link : CVE-2025-36017
JSON object : View
Products Affected
ibm
- controller
CWE
CWE-526
Cleartext Storage of Sensitive Information in an Environment Variable
