SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2025-36290

MEDIUM · CVSS 5.9 EPSS 0.16%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-07

CyberRota Analysis

AI-Generated

IBM Integrated Analytics System versions 1.0.0.0 through 1.0.31.0 are vulnerable due to improper validation of TLS certificates, potentially enabling attackers to execute man-in-the-middle attacks and access sensitive information. Organizations using these affected versions should prioritize patching to mitigate the risk of data exposure. This vulnerability is particularly relevant for enterprises relying on secure data transmission within their analytics workflows.

CVE
CVE-2025-36290
Severity
MEDIUM
CVSS
5.9
EPSS
0.16%

Original NVD Description

IBM Integrated Analytics System 1.0.0.0 through 1.0.31.0 does not validate or improperly validates TLS certificate validation, which could allow an attacker to obtain sensitive information using man in the middle techniques.

Related CVEs

Other vulnerabilities affecting the same vendor(s)