CVE-2025-27903

IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 IBM Db2 Recovery Expert for Linux, UNIX and Windows transmits data in a cleartext communication channel that could allow an attacker to obtain sensitive information using man in the middle techniques.
References
Link Resource
https://www.ibm.com/support/pages/node/7259901 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:unix:*:*
cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:windows:*:*

History

26 Feb 2026, 18:14

Type Values Removed Values Added
First Time Ibm db2 Recovery Expert
Ibm
CPE cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:unix:*:*
cpe:2.3:a:ibm:db2_recovery_expert:5.5.0:interim_fix_002:*:*:*:windows:*:*
References () https://www.ibm.com/support/pages/node/7259901 - () https://www.ibm.com/support/pages/node/7259901 - Vendor Advisory

18 Feb 2026, 17:51

Type Values Removed Values Added
Summary
  • (es) IBM DB2 Recovery Expert for LUW 5.5 Interim Fix 002 IBM Db2 Recovery Expert for Linux, UNIX and Windows transmite datos en un canal de comunicación de texto claro que podría permitir a un atacante obtener información sensible utilizando técnicas de man-in-the-middle.

17 Feb 2026, 20:22

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-17 20:22

Updated : 2026-02-26 18:14


NVD link : CVE-2025-27903

Mitre link : CVE-2025-27903

CVE.ORG link : CVE-2025-27903


JSON object : View

Products Affected

ibm

  • db2_recovery_expert
CWE
CWE-319

Cleartext Transmission of Sensitive Information