VYPR
Medium severity4.3NVD Advisory· Published Dec 8, 2025· Updated Jun 17, 2026

CVE-2025-33111

CVE-2025-33111

Description

IBM Controller 11.1.0 through 11.1.1 and IBM Cognos Controller 11.0.0 through 11.0.1 FP6 is vulnerable to creation of temporary files without atomic operations which may expose sensitive information to an authenticated user due to race condition attacks.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • IBM/Cognos Controllerllm-create5 versions
    11.1.0 - 11.1.1+ 4 more
    • (no CPE)range: 11.1.0 - 11.1.1
    • cpe:2.3:a:ibm:controller:11.1.0:*:*:*:*:*:*:*range: 11.1.0
    • cpe:2.3:a:ibm:cognos_controller:11.0.0:*:*:*:*:*:*:*range: 11.0.0
    • cpe:2.3:a:ibm:cognos_controller:*:*:*:*:*:*:*:*range: >=11.0.0,<11.0.1.7
    • cpe:2.3:a:ibm:controller:*:*:*:*:*:*:*:*range: >=11.1.0,<11.1.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.