CVE-2025-36187

IBM Knowledge Catalog Standard Cartridge 5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.1, 5.1.1, 5,1.2, 5.1.3, 5.2.0, 5.2.1 stores potentially sensitive information in log files that could be read by a local privileged user.
References
Link Resource
https://www.ibm.com/support/pages/node/7267542 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:knowledge_catalog:5.0.0:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.2:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.3:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1.2:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1.3:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.2.0:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.2.1:*:*:*:standard:*:*:*
cpe:2.3:o:redhat:openshift:-:*:*:*:*:*:*:*

History

31 Mar 2026, 20:22

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:knowledge_catalog:5.1.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.2.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1.3:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1.2:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.1:*:*:*:standard:*:*:*
cpe:2.3:o:redhat:openshift:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.3:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.0:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.2.0:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:knowledge_catalog:5.0.2:*:*:*:standard:*:*:*
Summary
  • (es) IBM Knowledge Catalog Standard Cartridge 5.0.0, 5.0.1, 5.0.2, 5.0.3, 5.1, 5.1.1, 5,1.2, 5.1.3, 5.2.0, 5.2.1 almacena información potencialmente sensible en archivos de registro que podría ser leída por un usuario privilegiado local.
References () https://www.ibm.com/support/pages/node/7267542 - () https://www.ibm.com/support/pages/node/7267542 - Vendor Advisory
First Time Redhat
Ibm
Ibm knowledge Catalog
Redhat openshift

25 Mar 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-25 22:16

Updated : 2026-03-31 20:22


NVD link : CVE-2025-36187

Mitre link : CVE-2025-36187

CVE.ORG link : CVE-2025-36187


JSON object : View

Products Affected

ibm

  • knowledge_catalog

redhat

  • openshift
CWE
CWE-532

Insertion of Sensitive Information into Log File