Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-36096


IBM AIX 7.2, and 7.3 and IBM VIOS 3.1, and 4.1 stores NIM private keys used in NIM environments in an insecure way which is susceptible to unauthorized access by an attacker using man in the middle techniques.


Published

2025-11-13T22:15:50.500

Last Modified

2025-11-19T22:11:50.723

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.0 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-522

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm vios 3.1.0 Yes
Application ibm vios 4.1.0 Yes
Operating System ibm aix 7.2 Yes
Operating System ibm aix 7.3 Yes

References