CVE-2025-36157

IBM Jazz Foundation 7.0.2 to 7.0.2 iFix035, 7.0.3 to 7.0.3 iFix018, and 7.1.0 to 7.1.0 iFix004 could allow an unauthenticated remote attacker to update server property files that would allow them to perform unauthorized actions.
References
Link Resource
https://www.ibm.com/support/pages/node/7242925 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:jazz_foundation:7.0.2:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix004:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix005:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix006:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix007:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix008a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix009:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix010:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix011:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix012:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix013:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix014:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix016:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix017:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix018:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix020a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix021:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix022:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix023:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix024:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix025:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix026a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix027:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix028:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix029:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix030:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix031:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix032:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix033:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix034:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix035:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix004:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix005:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix006:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix007:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix008:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix009:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix010:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix011:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix012:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix013:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix014:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix015:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix016:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix017:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix018:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix004:*:*:*:*:*:*

History

18 Dec 2025, 17:57

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7242925 - () https://www.ibm.com/support/pages/node/7242925 - Patch, Vendor Advisory
CPE cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix020a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix025:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix029:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix009:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix016:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix004:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix013:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix017:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix014:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix014:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix010:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix034:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix012:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix012:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix015:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix005:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix013:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix018:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix004:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix032:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix011:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix007:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:-:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix028:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix021:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix017:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix009:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix004:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix007:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix035:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix033:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix005:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix023:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.1.0:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix008:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix006:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix016:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix018:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix001:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix027:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix030:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix022:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.3:ifix010:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix002:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix024:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix031:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix011:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix008a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix003:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix026a:*:*:*:*:*:*
cpe:2.3:a:ibm:jazz_foundation:7.0.2:ifix006:*:*:*:*:*:*
First Time Ibm jazz Foundation
Ibm

25 Aug 2025, 20:24

Type Values Removed Values Added
Summary
  • (es) IBM Jazz Foundation 7.0.2 a 7.0.2 iFix035, 7.0.3 a 7.0.3 iFix018 y 7.1.0 a 7.1.0 iFix004 podrían permitir que un atacante remoto no autenticado actualice archivos de propiedades del servidor que le permitirían realizar acciones no autorizadas.

24 Aug 2025, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-24 02:15

Updated : 2025-12-18 17:57


NVD link : CVE-2025-36157

Mitre link : CVE-2025-36157

CVE.ORG link : CVE-2025-36157


JSON object : View

Products Affected

ibm

  • jazz_foundation
CWE
CWE-863

Incorrect Authorization