CVE-2025-36187: Multiple Security vulnerabilities affecting IBM Knowledge Catalog Standard Cartridge
IBM Knowledge Catalog Standard Cartridge 5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.1, 5.1.1, 5,1.2, 5.1.3, 5.2.0, 5.2.1 stores potentially sensitive information in log files that could be read by a local privileged user.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36187?
CVE-2025-36187 has been classified as a medium severity vulnerability due to its potential to expose sensitive information from log files.
How do I fix CVE-2025-36187?
To fix CVE-2025-36187, it is recommended to upgrade to a version of IBM Knowledge Catalog Standard Cartridge that is not affected by this vulnerability.
What does CVE-2025-36187 affect?
CVE-2025-36187 affects multiple versions of IBM Knowledge Catalog Standard Cartridge, specifically versions from 5.0.0 to 5.2.1.
Who is affected by CVE-2025-36187?
Organizations using IBM Knowledge Catalog Standard Cartridge versions 5.0.0 to 5.2.1 are at risk of CVE-2025-36187.
What type of information is at risk with CVE-2025-36187?
CVE-2025-36187 puts potentially sensitive information stored in log files at risk of being accessed by local privileged users.