VYPR
Low severity3.1NVD Advisory· Published Mar 13, 2026· Updated Apr 2, 2026

CVE-2025-14811

CVE-2025-14811

Description

IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.

Affected products

2
  • cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:essentials:*:*:*+ 1 more
    • cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:essentials:*:*:*range: >=6.2.3,<6.2.3.6
    • cpe:2.3:a:ibm:sterling_partner_engagement_manager:*:*:*:*:standard:*:*:*range: >=6.2.3,<6.2.3.6

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.