Metrics
Affected Vendors & Products
No advisories yet.
Solution
For IBM Engineering Requirements Management DOORS Next 7.0.2, install ifix 36. For IBM Engineering Requirements Management DOORS Next 7.0.3, install ifix 19 or newer. For IBM Engineering Requirements Management DOORS Next 7.1.0, install ifix 05 or newer.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7247716 |
|
Thu, 16 Oct 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm aix
Linux Linux linux Kernel Microsoft Microsoft windows |
|
| CPEs | cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm aix
Linux Linux linux Kernel Microsoft Microsoft windows |
Tue, 14 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 12 Oct 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Engineering Requirements Management Doors Next 7.0.2, 7.0.3, and 7.1 could allow an authenticated user on the network to delete reviews from other users due to client-side enforcement of server-side security. | |
| Title | IBM Engineering Requirements Management Doors Next security bypass | |
| First Time appeared |
Ibm
Ibm engineering Requirements Management Doors Next |
|
| Weaknesses | CWE-602 | |
| CPEs | cpe:2.3:a:ibm:engineering_requirements_management_doors_next:7.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_requirements_management_doors_next:7.0.3:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_requirements_management_doors_next:7.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm engineering Requirements Management Doors Next |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-10-14T14:48:18.322Z
Reserved: 2025-03-10T01:10:32.275Z
Link: CVE-2025-2139
Updated: 2025-10-14T14:48:15.357Z
Status : Analyzed
Published: 2025-10-12T14:15:36.213
Modified: 2025-10-16T14:27:01.660
Link: CVE-2025-2139
No data.
OpenCVE Enrichment
No data.