Medium severity6.3NVD Advisory· Published Oct 24, 2025· Updated Jun 17, 2026
CVE-2025-36361
CVE-2025-36361
Description
IBM App Connect Enterprise 13.0.1.0 through 13.0.4.2, and 12.0.1.0 through 12.0.12.17 could allow an authenticated user to perform unauthorized actions on customer defined resources due to missing authorization.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
313.0.1.0 - 13.0.4.2, 12.0.1.0 - 12.0.12.17+ 2 more
- (no CPE)range: 13.0.1.0 - 13.0.4.2, 12.0.1.0 - 12.0.12.17
- cpe:2.3:a:ibm:app_connect_enterprise:12.0.1.0:*:*:*:*:*:*:*range: 13.0.1.0
- cpe:2.3:a:ibm:app_connect_enterprise:*:*:*:*:*:*:*:*range: >=12.0.1.0,<=12.0.12.17
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7249061nvdVendor Advisory
News mentions
0No linked articles in our index yet.