Vulnerability Details CVE-2025-36351
IBM License Metric Tool 9.2.0 through 9.2.40
could allow an authenticated user to bypass access controls in the REST API interface and perform unauthorized actions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.5%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2025-36351
-
cpe:2.3:a:ibm:license_metric_tool:9.2.0
-
cpe:2.3:a:ibm:license_metric_tool:9.2.0.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.0.2
-
cpe:2.3:a:ibm:license_metric_tool:9.2.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.10
-
cpe:2.3:a:ibm:license_metric_tool:9.2.10.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.11
-
cpe:2.3:a:ibm:license_metric_tool:9.2.11.2
-
cpe:2.3:a:ibm:license_metric_tool:9.2.11.3
-
cpe:2.3:a:ibm:license_metric_tool:9.2.12
-
cpe:2.3:a:ibm:license_metric_tool:9.2.12.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.12.2
-
cpe:2.3:a:ibm:license_metric_tool:9.2.13
-
cpe:2.3:a:ibm:license_metric_tool:9.2.13.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.14
-
cpe:2.3:a:ibm:license_metric_tool:9.2.14.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.14.2
-
cpe:2.3:a:ibm:license_metric_tool:9.2.15
-
cpe:2.3:a:ibm:license_metric_tool:9.2.15.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.2
-
cpe:2.3:a:ibm:license_metric_tool:9.2.3
-
cpe:2.3:a:ibm:license_metric_tool:9.2.3.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.4
-
cpe:2.3:a:ibm:license_metric_tool:9.2.5
-
cpe:2.3:a:ibm:license_metric_tool:9.2.5.1
-
cpe:2.3:a:ibm:license_metric_tool:9.2.6
-
cpe:2.3:a:ibm:license_metric_tool:9.2.7
-
cpe:2.3:a:ibm:license_metric_tool:9.2.8
-
cpe:2.3:a:ibm:license_metric_tool:9.2.9