Vulnerability Details CVE-2025-36159
IBM Concert 1.0.0 through 2.0.0 could allow a local user to forge log files to impersonate other users or hide their identity due to improper neutralization of output.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 1.1%
CVSS Severity
CVSS v3 Score 6.2
Products affected by CVE-2025-36159
-
cpe:2.3:a:ibm:concert:1.0.0
-
cpe:2.3:a:ibm:concert:1.0.1
-
cpe:2.3:a:ibm:concert:1.0.2
-
cpe:2.3:a:ibm:concert:1.0.2.1
-
cpe:2.3:a:ibm:concert:1.0.2.2
-
cpe:2.3:a:ibm:concert:1.0.3
-
cpe:2.3:a:ibm:concert:1.0.4
-
cpe:2.3:a:ibm:concert:1.0.4.1
-
cpe:2.3:a:ibm:concert:1.0.5
-
cpe:2.3:a:ibm:concert:1.0.5.1
-
cpe:2.3:a:ibm:concert:1.0.5.2
-
cpe:2.3:a:ibm:concert:1.0.5.4
-
cpe:2.3:a:ibm:concert:1.1.0