Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-2140


IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to spoof email identity of the sender due to improper verification of source data.


Published

2025-10-12T14:15:36.373

Last Modified

2025-10-16T14:32:22.890

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.7 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-346

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm engineering_requirements_management_doors_next 7.0.2 Yes
Application ibm engineering_requirements_management_doors_next 7.0.3 Yes
Application ibm engineering_requirements_management_doors_next 7.1 Yes
Operating System ibm aix - No
Operating System linux linux_kernel - No
Operating System microsoft windows - No

References