First published: Wed Apr 09 2025(Updated: )
IBM Security Guardium 11.4 and 12.1 could allow a privileged user to read any file on the system due to incorrect privilege assignment.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Guardium Data Protection | <=11.4 | |
IBM Guardium Data Protection | <=12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25023 is classified as a high-severity vulnerability due to the risk of unauthorized file access by privileged users.
To fix CVE-2025-25023, update IBM Security Guardium to version 11.5 or 12.2 or apply the appropriate security patches provided by IBM.
CVE-2025-25023 affects IBM Security Guardium versions 11.4 and 12.1.
CVE-2025-25023 can be exploited to allow privileged users to read any file on the system, leading to potential data breaches.
Organizations using affected versions of IBM Security Guardium are responsible for addressing CVE-2025-25023 by implementing necessary updates or patches.