CVE-2025-33089: Multiple Vulnerabilities in IBM Concert Software.
IBM Concert 1.0.0 through 2.1.0 could allow a remote attacker to obtain sensitive information or perform unauthorized actions due to the use of hard coded user credentials.
Other sources
IBM Concert Software could allow a remote attacker to obtain sensitive information or perform unauthorized actions due to the use of hard coded user credentials.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33089?
CVE-2025-33089 has a significant severity level due to the potential for sensitive information exposure and unauthorized actions.
How do I fix CVE-2025-33089?
To fix CVE-2025-33089, it is recommended to upgrade IBM Concert Software to version 2.2.0 or later.
Who is affected by CVE-2025-33089?
CVE-2025-33089 affects users of IBM Concert Software versions 1.0.0 through 2.1.0.
What type of attacks are possible due to CVE-2025-33089?
CVE-2025-33089 may allow remote attackers to obtain sensitive information or perform unauthorized actions.
What causes the vulnerabilities in CVE-2025-33089?
The vulnerabilities in CVE-2025-33089 are caused by the use of hard-coded user credentials within the IBM Concert Software.