File Upload Vulnerability in IBM Jazz Foundation Products
CVE-2025-25048
6.5MEDIUM
What is CVE-2025-25048?
The IBM Jazz Foundation contains a vulnerability that permits authenticated users to upload files to restricted directories. This occurs due to insufficient validation of file paths, which can lead to unauthorized access or manipulation of sensitive data. It is crucial for organizations utilizing affected versions to apply recommended patches to safeguard their systems from potential exploitation.
Affected Version(s)
Jazz Foundation 7.0.2 <= 7.0.2 iFix033
Jazz Foundation 7.0.3 <= 7.0.3 iFix012
Jazz Foundation 7.1.0 <= 7.1.0 iFix002