Remote Phishing Vulnerability in IBM Operational Decision Manager
CVE-2025-2824
What is CVE-2025-2824?
The vulnerability allows a remote attacker to exploit open redirect flaws in IBM Operational Decision Manager, creating opportunities for phishing attacks. By compelling unsuspecting users to access a specially crafted website, attackers can manipulate the URL displayed in the browser, leading users to malicious sites that mimic trusted entities. This can result in sensitive information theft and enable further malicious activities against the victim. Organizations using affected versions are strongly advised to implement the necessary security patches to protect against such exploits.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Operational Decision Manager 8.11.0.1
Operational Decision Manager 8.11.1.0
Operational Decision Manager 8.12.0.1
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved