Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-0799


IBM App Connect enterprise 12.0.1.0 through 12.0.12.10 and 13.0.1.0 through 13.0.2.1 could allow an authenticated user to write to an arbitrary file on the system during bar configuration deployment due to improper pathname limitations on restricted directories.


Published

2025-02-06T01:15:09.580

Last Modified

2025-08-12T18:46:13.900

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm app_connect_enterprise ≤ 12.0.12.10 Yes
Application ibm app_connect_enterprise ≤ 13.0.2.1 Yes

References