IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7263391 |
|
History
Fri, 13 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 13 Mar 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Multiple Security Vulnerabilities in IBM Sterling Partner Engagement Manager | IBM Sterling Partner Engagement Manager Information Disclosure |
Fri, 13 Mar 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Sterling Partner Engagement Manager 6.2.3.0 through 6.2.3.5 and 6.2.4.0 through 6.2.4.2 could allow an attacker to obtain sensitive information from the query string of an HTTP GET method to process a request which could be obtained using man in the middle techniques. | |
| Title | Multiple Security Vulnerabilities in IBM Sterling Partner Engagement Manager | |
| First Time appeared |
Ibm
Ibm sterling Partner Engagement Manager |
|
| Weaknesses | CWE-598 | |
| CPEs | cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.3.0:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.3.0:*:*:*:standard:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.3.5:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.3.5:*:*:*:standard:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.4.0:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.4.0:*:*:*:standard:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.4.2:*:*:*:essentials:*:*:* cpe:2.3:a:ibm:sterling_partner_engagement_manager:6.2.4.2:*:*:*:standard:*:*:* |
|
| Vendors & Products |
Ibm
Ibm sterling Partner Engagement Manager |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-03-13T18:44:03.621Z
Reserved: 2025-12-16T23:18:27.896Z
Link: CVE-2025-14811
Updated: 2026-03-13T18:43:58.846Z
Status : Received
Published: 2026-03-13T19:53:50.353
Modified: 2026-03-13T19:53:50.353
Link: CVE-2025-14811
No data.
OpenCVE Enrichment
No data.